Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The process_extra function in libarchive before 3.2.0 uses the size field and a signed number in an offset, which allows remote attackers to cause a denial of service (crash) via a crafted zip file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libarchive 安全漏洞
Vulnerability Description
libarchive是一个多格式存档和压缩库。 libarchive 3.1.901a及之前的版本中的‘process_extra’函数存在安全漏洞,该漏洞源于程序使用‘size'字段和偏移量中的带符号数。远程攻击者可借助特制的压缩文件利用该漏洞造成拒绝服务(崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A