6.5
CVSSv3

CVE-2021-36976

Published: 20/07/2021 Updated: 27/03/2024
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

libarchive 3.4.1 up to and including 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libarchive libarchive

fedoraproject fedora 35

apple macos

apple iphone os

apple ipados

apple watchos

splunk universal forwarder 9.1.0

splunk universal forwarder

Vendor Advisories

Debian Bug report logs - #991442 libarchive: CVE-2021-36976 Package: src:libarchive; Maintainer for src:libarchive is Peter Pentchev <roam@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 23 Jul 2021 18:30:04 UTC Severity: important Tags: security, upstream Found in version libarchive/3 ...
Several security issues were fixed in libarchive ...
A use-after-free flaw was found in libarchive in the copy_string function ...
libarchive 341 through 351 has a use-after-free in copy_string (called from do_uncompress_block and process_block) ...
An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive A local attacker may use this flaw to gain more privi ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security updates page Apple security documents reference vulnerabilities by CVE-ID&nbsp ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security updates page Apple security documents reference vulnerabilities by CVE-ID&nbsp ...