The sandboxing code in libarchive 3.2.0 and previous versions mishandles hardlink archive entries of non-zero data size, which might allow remote malicious users to write to arbitrary files via a crafted archive file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat enterprise linux hpc node 6.0 |
||
redhat enterprise linux server 6.0 |
||
redhat enterprise linux workstation 6.0 |
||
redhat enterprise linux desktop 6.0 |
||
oracle linux 6 |
||
oracle linux 7 |
||
redhat openshift 3.2 |
||
redhat openshift 3.1 |
||
libarchive libarchive |
||
redhat enterprise linux server 7.0 |
||
redhat enterprise linux hpc node 7.0 |
||
redhat enterprise linux server aus 7.2 |
||
redhat enterprise linux desktop 7.0 |
||
redhat enterprise linux hpc node eus 7.2 |
||
redhat enterprise linux server eus 7.2 |
||
redhat enterprise linux workstation 7.0 |