Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-0271

Опубликовано: 29 янв. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-0271: libarchive security update (IMPORTANT)

[3.3.2-8]

  • Fix CVE-2019-18408: RAR use-after-free

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

bsdtar

3.3.2-8.el8_1

libarchive

3.3.2-8.el8_1

libarchive-devel

3.3.2-8.el8_1

Oracle Linux x86_64

bsdtar

3.3.2-8.el8_1

libarchive

3.3.2-8.el8_1

libarchive-devel

3.3.2-8.el8_1

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.

CVSS3: 8.1
redhat
больше 6 лет назад

archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.

CVSS3: 7.5
nvd
больше 6 лет назад

archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.

CVSS3: 7.5
debian
больше 6 лет назад

archive_read_format_rar_read_data in archive_read_support_format_rar.c ...

CVSS3: 7.5
github
больше 3 лет назад

archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.