REDHAT-BUG-620454: Low severity Gentoo cabextract vulnerability
An integer wrap-around flaw has been reported in the way cabextract processed certain Cabinet (.cab) archive files. If a local user was tricked into opening a specially-crafted .cab archive in test archive mode, it could lead to cabextract executable crash.
References: [1] http://bugs.gentoo.org/showbug.cgi?id=329891
Upstream patches: [2] http://libmspack.svn.sourceforge.net/viewvc/libmspack/libmspack/trunk/mspack/qtmd.c?r1=114&r2=113 [3] http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=118
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-620454?
REDHAT-BUG-620454 is classified as a moderate severity vulnerability due to the potential for local denial of service.
How do I fix REDHAT-BUG-620454?
To fix REDHAT-BUG-620454, update cabextract to the latest version that addresses this integer wrap-around flaw.
What causes REDHAT-BUG-620454?
REDHAT-BUG-620454 is caused by an integer wrap-around flaw in the way cabextract processes certain specially-crafted Cabinet archive files.
Who is affected by REDHAT-BUG-620454?
Users of cabextract who open specially-crafted *.cab files in test archive mode are affected by REDHAT-BUG-620454.
What type of attack is associated with REDHAT-BUG-620454?
The attack associated with REDHAT-BUG-620454 can be classified as a local denial of service due to the application crashing.