Show filters
70 Total Results
Displaying 61-70 of 70
Sort by:
Attacker Value
Unknown
CVE-2016-1541
Disclosure Date: May 07, 2016 (last updated November 25, 2024)
Heap-based buffer overflow in the zip_read_mac_metadata function in archive_read_support_format_zip.c in libarchive before 3.2.0 allows remote attackers to execute arbitrary code via crafted entry-size values in a ZIP archive.
0
Attacker Value
Unknown
CVE-2015-2304
Disclosure Date: March 15, 2015 (last updated October 05, 2023)
Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.
0
Attacker Value
Unknown
CVE-2013-0211
Disclosure Date: September 30, 2013 (last updated October 05, 2023)
Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer overflow.
0
Attacker Value
Unknown
CVE-2011-1779
Disclosure Date: April 13, 2012 (last updated October 04, 2023)
Multiple use-after-free vulnerabilities in libarchive 2.8.4 and 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted (1) TAR archive or (2) ISO9660 image.
0
Attacker Value
Unknown
CVE-2010-4666
Disclosure Date: April 13, 2012 (last updated October 04, 2023)
Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CAB file, which is not properly handled during the reading of Huffman code data within LZX compressed data.
0
Attacker Value
Unknown
CVE-2011-1777
Disclosure Date: April 13, 2012 (last updated October 04, 2023)
Multiple buffer overflows in the (1) heap_add_entry and (2) relocate_dir functions in archive_read_support_format_iso9660.c in libarchive through 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ISO9660 image.
0
Attacker Value
Unknown
CVE-2011-1778
Disclosure Date: April 13, 2012 (last updated October 04, 2023)
Buffer overflow in libarchive through 2.8.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TAR archive.
0
Attacker Value
Unknown
CVE-2007-3645
Disclosure Date: July 15, 2007 (last updated October 04, 2023)
archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (crash) via (1) an end-of-file condition within a tar header that follows a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive, which results in a NULL pointer dereference, a different issue than CVE-2007-3644.
0
Attacker Value
Unknown
CVE-2007-3641
Disclosure Date: July 14, 2007 (last updated October 04, 2023)
archive_read_support_format_tar.c in libarchive before 2.2.4 does not properly compute the length of a certain buffer when processing a malformed pax extension header, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) PAX or (2) TAR archive that triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2007-3644
Disclosure Date: July 14, 2007 (last updated October 04, 2023)
archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (infinite loop) via (1) an end-of-file condition within a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive.
0