First published: Tue Jun 04 2024(Updated: )
It was discovered that libarchive incorrectly handled certain RAR archive files. An attacker could possibly use this issue to execute arbitrary code or cause a crash.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libarchive13t64 | <3.7.2-2ubuntu0.1 | 3.7.2-2ubuntu0.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/libarchive13 | <3.6.2-1ubuntu1.1 | 3.6.2-1ubuntu1.1 |
Ubuntu | =23.10 | |
All of | ||
ubuntu/libarchive13 | <3.6.0-1ubuntu1.1 | 3.6.0-1ubuntu1.1 |
Ubuntu | =22.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-6805-1 is considered high due to the potential for arbitrary code execution or crashes.
To fix USN-6805-1, you should upgrade to the latest patched version of libarchive as specified in the advisory for your Ubuntu version.
USN-6805-1 affects Ubuntu versions 22.04, 23.10, and 24.04 with specific versions of libarchive.
An attacker can exploit USN-6805-1 to execute arbitrary code or cause a denial of service by crashing the application.
You can find more information about USN-6805-1 in the Ubuntu security notices section.