Описание
Security update for p7zip
This update for p7zip fixes one security issue.
This security issue was fixed:
- CVE-2016-2335: UDF CInArchive::ReadFileItem code execution vulnerability (bsc#979823)
This update was imported from the SUSE:SLE-12:Update update project.
Список пакетов
openSUSE Leap 42.1
p7zip-9.20.1-15.1
Ссылки
- E-Mail link for openSUSE-SU-2016:1675-1
- SUSE Security Ratings
Описание
The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code via the PartitionRef field in the Long Allocation Descriptor in a UDF file.
Затронутые продукты
openSUSE Leap 42.1:p7zip-9.20.1-15.1
Ссылки
- CVE-2016-2335
- SUSE Bug 979823