Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-5786

Опубликовано: 19 янв. 2018
Источник: debian

Описание

In Long Range Zip (aka lrzip) 0.631, there is an infinite loop and application hang in the get_fileinfo function (lrzip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lrzipfixed0.651-2package
lrzipno-dsajessiepackage
lrzipno-dsawheezypackage

Примечания

  • https://github.com/ckolivas/lrzip/issues/91

  • Fixed by: https://github.com/ckolivas/lrzip/commit/3495188cd8f2215a9feea201f3e05c1341ed95fb

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is an infinite loop and application hang in the get_fileinfo function (lrzip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.

CVSS3: 5.5
nvd
около 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is an infinite loop and application hang in the get_fileinfo function (lrzip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.

CVSS3: 5.5
github
почти 4 года назад

In Long Range Zip (aka lrzip) 0.631, there is an infinite loop and application hang in the get_fileinfo function (lrzip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.