Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-11463

Опубликовано: 23 апр. 2019
Источник: nvd
CVSS3: 5.5
CVSS2: 4.3
EPSS Низкий

Описание

A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows remote attackers to cause a denial of service via a crafted ZIP file because of a HAVE_LZMA_H typo. NOTE: this only affects users who downloaded the development code from GitHub. Users of the product's official releases are unaffected.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libarchive:libarchive:*:*:*:*:*:*:*:*
Версия до 3.4.0 (исключая)

EPSS

Процентиль: 42%
0.00196
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-401

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 7 лет назад

A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows remote attackers to cause a denial of service via a crafted ZIP file because of a HAVE_LZMA_H typo. NOTE: this only affects users who downloaded the development code from GitHub. Users of the product's official releases are unaffected.

CVSS3: 5.5
redhat
почти 7 лет назад

A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive 3.3.4-dev allows remote attackers to cause a denial of service via a crafted ZIP file because of a HAVE_LZMA_H typo. NOTE: this only affects users who downloaded the development code from GitHub. Users of the product's official releases are unaffected.

CVSS3: 5.5
debian
почти 7 лет назад

A memory leak in archive_read_format_zip_cleanup in archive_read_suppo ...

github
больше 3 лет назад

A memory leak in archive_read_format_zip_cleanup in archive_read_support_format_zip.c in libarchive through 3.3.3 allows remote attackers to cause a denial of service via a crafted ZIP file because of a HAVE_LZMA_H typo.

EPSS

Процентиль: 42%
0.00196
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-401