Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2334

Опубликовано: 13 дек. 2016
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 9.3
CVSS3: 7.8

Описание

Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

16.02+dfsg-6
devel

not-affected

16.02+dfsg-6
esm-apps/bionic

not-affected

16.02+dfsg-6
esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present
precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

not-affected

code not present
trusty/esm

not-affected

code not present

Показывать по

EPSS

Процентиль: 95%
0.16299
Средний

9.3 Critical

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
около 9 лет назад

Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.

CVSS3: 7.8
debian
около 9 лет назад

Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZli ...

CVSS3: 7.8
github
больше 3 лет назад

Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.

EPSS

Процентиль: 95%
0.16299
Средний

9.3 Critical

CVSS2

7.8 High

CVSS3