Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-57970

Опубликовано: 16 фев. 2025
Источник: nvd
CVSS3: 4
EPSS Низкий

Описание

libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.

EPSS

Процентиль: 1%
0.00011
Низкий

4 Medium

CVSS3

Дефекты

CWE-126

Связанные уязвимости

CVSS3: 4
ubuntu
4 месяца назад

libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.

CVSS3: 4
redhat
4 месяца назад

libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.

CVSS3: 4
debian
4 месяца назад

libarchive through 3.7.7 has a heap-based buffer over-read in header_g ...

CVSS3: 4
github
4 месяца назад

libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.

CVSS3: 4
fstec
4 месяца назад

Уязвимость функции header_gnu_longlink компонента archive_read_support_format_tar.c библиотеки архивирования Libarchive, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 1%
0.00011
Низкий

4 Medium

CVSS3

Дефекты

CWE-126