İçeriğe atla
Noroxi

libarchive kayıtları

libarchive üreticisine ait 76 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
4
Düzeltme kaydı olan
%93,4
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

76 kayıt
  • CVE-2024-26256
    56Planlayın

    Libarchive Remote Code Execution Vulnerability

    YüksekCVSS 7,8İstismar yokEPSS %85

    libarchive · libarchive9 Nis 2024

  • CVE-2022-36227
    40Planlayın

    In libarchive before 3.6.2, the software does not check for an error after calling calloc function that can return with a NULL pointer if th

    KritikCVSS 9,8İstismar yokEPSS %2

    libarchive · libarchive21 Kas 2022

  • CVE-2016-1541
    38İzleyin

    Heap-based buffer overflow in the zip_read_mac_metadata function in archive_read_support_format_zip.c in libarchive before 3.2.0 allows remo

    YüksekCVSS 8,8İstismar yokEPSS %10

    libarchive · libarchive7 May 2016

  • CVE-2016-6250
    36İzleyin

    Integer overflow in the ISO9660 writer in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) o

    YüksekCVSS 8,6İstismar yokEPSS %6

    libarchive · libarchive21 Eyl 2016

  • libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: Double Free vulnerab

    YüksekCVSS 8,8İstismar yokEPSS %5

    libarchive · libarchive20 Ara 2018

  • libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-416: Use After Free vulne

    YüksekCVSS 8,8İstismar yokEPSS %4

    libarchive · libarchive20 Ara 2018

  • CVE-2020-9308
    36İzleyin

    archive_read_support_format_rar5.c in libarchive before 3.4.2 attempts to unpack a RAR5 file with an invalid or corrupted header (such as a

    YüksekCVSS 8,8İstismar yokEPSS %2

    libarchive · libarchive20 Şub 2020

  • CVE-2024-37407
    36İzleyin

    Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled.

    KritikCVSS 9,1İstismar yokEPSS %1

    libarchive · libarchive8 Haz 2024

  • CVE-2015-8921
    34İzleyin

    The ae_strtofflags function in archive_entry.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (out-of-bound

    YüksekCVSS 7,5İstismar yokEPSS %12

    libarchive · libarchive20 Eyl 2016

  • CVE-2016-8687
    32İzleyin

    Stack-based buffer overflow in the safe_fprintf function in tar/util.c in libarchive 3.2.1 allows remote attackers to cause a denial of serv

    YüksekCVSS 7,5İstismar yokEPSS %5

    libarchive · libarchive15 Şub 2017

  • CVE-2016-4300
    32İzleyin

    Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attacker

    YüksekCVSS 7,8İstismar yokEPSS %5

    libarchive · libarchive21 Eyl 2016

  • CVE-2016-4302
    32İzleyin

    Heap-based buffer overflow in the parse_codes function in archive_read_support_format_rar.c in libarchive before 3.2.1 allows remote attacke

    YüksekCVSS 7,8İstismar yokEPSS %5

    libarchive · libarchive21 Eyl 2016

  • CVE-2016-4301
    32İzleyin

    Stack-based buffer overflow in the parse_device function in archive_read_support_format_mtree.c in libarchive before 3.2.1 allows remote att

    YüksekCVSS 7,8İstismar yokEPSS %4

    libarchive · libarchive21 Eyl 2016

  • CVE-2015-8931
    32İzleyin

    Multiple integer overflows in the (1) get_time_t_max and (2) get_time_t_min functions in archive_read_support_format_mtree.c in libarchive b

    YüksekCVSS 7,8İstismar yokEPSS %2

    libarchive · libarchive20 Eyl 2016

  • CVE-2016-4809
    31İzleyin

    The archive_read_format_cpio_read_header function in archive_read_support_format_cpio.c in libarchive before 3.2.1 allows remote attackers t

    YüksekCVSS 7,5İstismar yokEPSS %5

    libarchive · libarchive21 Eyl 2016

  • CVE-2016-5418
    31İzleyin

    The sandboxing code in libarchive 3.2.0 and earlier mishandles hardlink archive entries of non-zero data size, which might allow remote atta

    YüksekCVSS 7,5İstismar yokEPSS %5

    libarchive · libarchive21 Eyl 2016

  • CVE-2015-8919
    31İzleyin

    The lha_read_file_extended_header function in archive_read_support_format_lha.c in libarchive before 3.2.0 allows remote attackers to cause

    YüksekCVSS 7,5İstismar yokEPSS %5

    libarchive · libarchive20 Eyl 2016

  • CVE-2017-5601
    31İzleyin

    An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger

    YüksekCVSS 7,5İstismar yokEPSS %5

    libarchive · libarchive27 Oca 2017

  • CVE-2015-8917
    31İzleyin

    bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an invalid c

    YüksekCVSS 7,5İstismar yokEPSS %4

    libarchive · libarchive20 Eyl 2016

  • CVE-2015-8930
    31İzleyin

    bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (infinite loop) via an ISO with a directory that is a

    YüksekCVSS 7,5İstismar yokEPSS %4

    libarchive · libarchive20 Eyl 2016

  • CVE-2019-18408
    31İzleyin

    archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_

    YüksekCVSS 7,5İstismar yokEPSS %4

    libarchive · libarchive24 Eki 2019

  • CVE-2015-8918
    31İzleyin

    The archive_string_append function in archive_string.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (cras

    YüksekCVSS 7,5İstismar yokEPSS %4

    libarchive · libarchive20 Eyl 2016

  • CVE-2017-14502
    31İzleyin

    read_header in archive_read_support_format_rar.c in libarchive 3.3.2 suffers from an off-by-one error for UTF-16 names in RAR archives, lead

    YüksekCVSS 7,5İstismar yokEPSS %3

    libarchive · libarchive17 Eyl 2017

  • CVE-2016-8689
    31İzleyin

    The read_Header function in archive_read_support_format_7zip.c in libarchive 3.2.1 allows remote attackers to cause a denial of service (out

    YüksekCVSS 7,5İstismar yokEPSS %3

    libarchive · libarchive15 Şub 2017

  • CVE-2024-48958
    31İzleyin

    execute_filter_delta in archive_read_support_format_rar.c in libarchive before 3.7.5 allows out-of-bounds access via a crafted archive file

    YüksekCVSS 7,8İstismar yokEPSS %1

    libarchive · libarchive9 Eki 2024