Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-0211

Опубликовано: 30 сент. 2013
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer overflow.

РелизСтатусПримечание
devel

not-affected

3.1.2-11
esm-infra-legacy/trusty

not-affected

3.1.2-7ubuntu2
hardy

ignored

end of life
lucid

ignored

end of life
oneiric

ignored

end of life
precise

released

3.0.3-6ubuntu1.1
quantal

ignored

end of life
raring

ignored

end of life
saucy

ignored

end of life
trusty

not-affected

3.1.2-7ubuntu2

Показывать по

EPSS

Процентиль: 79%
0.01196
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 13 лет назад

Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer overflow.

nvd
больше 12 лет назад

Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer overflow.

debian
больше 12 лет назад

Integer signedness error in the archive_write_zip_data function in arc ...

github
почти 4 года назад

Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer overflow.

suse-cvrf
почти 11 лет назад

Security update for libarchive

EPSS

Процентиль: 79%
0.01196
Низкий

5 Medium

CVSS2