Lucene search

K
osvGoogleOSV:CVE-2019-19221
HistoryNov 21, 2019 - 11:15 p.m.

CVE-2019-19221

2019-11-2123:15:13
Google
osv.dev
5

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

32.7%

In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. For example, bsdtar crashes via a crafted archive.