5
CVSSv2

CVE-2015-8918

Published: 20/09/2016 Updated: 12/09/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The archive_string_append function in archive_string.c in libarchive prior to 3.2.0 allows remote malicious users to cause a denial of service (crash) via a crafted cab files, related to "overlapping memcpy."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

novell suse linux enterprise server 12.0

novell suse linux enterprise desktop 12.0

novell suse linux enterprise software development kit 12.0

libarchive libarchive

Vendor Advisories

The archive_string_append function in archive_stringc in libarchive before 320 allows remote attackers to cause a denial of service (crash) via a crafted cab files, related to "overlapping memcpy" ...