Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Quantum archive in a .cab file, related to the libmspack library.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
cabextract Quantum解压器存在整数带符号错误漏洞
Vulnerability Description
cabextract是软件开发者Stuart Caie所研发的一套Microsoft Cabinet文件处理工具。该工具可以列出、提取和创建压缩(.cab)文件。 cabextract 1.3之前版本中的Quantum解压器存在整数带符号错误漏洞。当启用存档测试模式时,用户辅助远程攻击者可以借助一个.cab文件中特制的Quantum存档导致服务拒绝(应用程序崩溃)或可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A