CVE-2016-8689

Published

Severity

CVSS v3:
7.5 HIGH
CVSS v2:
5 MEDIUM

Description

The read_Header function in archive_read_support_format_7zip.c in libarchive 3.2.1 allows remote attackers to cause a denial of service (out-of-bounds read) via multiple EmptyStream attributes in a header in a 7zip archive.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:libarchive:libarchive:3.2.1:*:*:*:*:*:*:*n/an/a3.2.1
cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*n/an/a42.2

External Links