Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7878
HistoryNov 23, 2018 - 6:11 a.m.

Denial Of Service (DoS) Via Heap-Based Buffer Over-Read

2018-11-2306:11:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.013 Low

EPSS

Percentile

85.7%

libarchive.so is vulnerable to heap-based buffer over-read. The vulnerability can be triggered when an attacker input a malicious file to the archive_le32dec function in archive_endian.h.

CPENameOperatorVersion
libarchive.soeq2.8.3