Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-5996

Опубликовано: 31 янв. 2018
Источник: debian
EPSS Низкий

Описание

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
p7zip-rarfixed16.02-2package
p7zip-rarno-dsastretchpackage
p7zip-rarno-dsajessiepackage
p7zip-rarno-dsawheezypackage

Примечания

  • https://landave.io/2018/01/7-zip-multiple-memory-corruptions-via-rar-and-zip/

EPSS

Процентиль: 89%
0.04477
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.

CVSS3: 9.8
redhat
больше 7 лет назад

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.

CVSS3: 7.8
nvd
больше 7 лет назад

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.

CVSS3: 7.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.8
github
больше 3 лет назад

Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18.00 and p7zip can lead to multiple memory corruptions within the PPMd code, allows remote attackers to cause a denial of service (segmentation fault) or execute arbitrary code via a crafted RAR archive.

EPSS

Процентиль: 89%
0.04477
Низкий