First published: Thu Dec 19 2024(Updated: )
This vulnerability allows remote attackers to execute arbitrary code on affected installations of libarchive. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-26256.
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Libarchive |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ZDI-CAN-23999 has a CVSS rating of 7.8, indicating a high severity level.
To fix ZDI-CAN-23999, update to the latest version of libarchive that addresses this vulnerability.
ZDI-CAN-23999 affects installations of libarchive that interact with this library under certain conditions.
ZDI-CAN-23999 is a remote code execution vulnerability that allows attackers to execute arbitrary code.
Exploitation of ZDI-CAN-23999 requires interaction with the libarchive library.