6.8
CVSSv2

CVE-2011-1778

Published: 13/04/2012 Updated: 10/01/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in libarchive up to and including 2.8.5 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TAR archive.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd libarchive 2.8.4

freebsd libarchive 2.6.2

freebsd libarchive 2.6.1

freebsd libarchive

freebsd libarchive 2.2.3

freebsd libarchive 2.8.1

freebsd libarchive 2.8.0

freebsd libarchive 2.4

freebsd libarchive 2.3

freebsd libarchive 2.7.1

freebsd libarchive 2.7.0

freebsd libarchive 2.2

freebsd libarchive 2.1

freebsd libarchive 2.0

freebsd libarchive 2.8.3

freebsd libarchive 2.8.2

freebsd libarchive 2.6

freebsd libarchive 2.5

Vendor Advisories

Synopsis Moderate: libarchive security update Type/Severity Security Advisory: Moderate Topic Updated libarchive packages that fix two security issues are now availablefor Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerabil ...
Debian Bug report logs - #651844 libarchive: fix for CVE-2011-1777 and CVE-2011-1778 Package: libarchive; Maintainer for libarchive is Peter Pentchev <roam@debianorg>; Reported by: Marc Deslauriers <marcdeslauriers@ubuntucom> Date: Mon, 12 Dec 2011 15:09:02 UTC Severity: normal Tags: patch Found in version 285- ...
libarchive could be made to crash or run programs as your login if it opened a specially crafted file ...
Two buffer overflows have been discovered in libarchive, a library providing a flexible interface for reading and writing archives in various formats The possible buffer overflows while reading ISO 9660 or tar streams allow remote attackers to execute arbitrary code depending on the application that makes use of this functionality For the stable ...