Back

MEDIUM

libarchive: Out-of-bounds read in parse_file_info

Published Sep 17, 2017

Description

An out-of-bounds read flaw exists in parse_file_info in archive_read_support_format_iso9660.c in libarchive 3.3.2 when extracting a specially crafted iso9660 iso file, related to archive_read_format_iso9660_read_header.

Affected products

Remediation

Red Hat statement

Starting in Red Hat Enterprise Linux (RHEL) 8.4.0 already fixed version of the libarchive packages is shipped, therefore RHEL 8.4.0 and later versions are not affected by this vulnerability.

Metrics

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Sep 17, 2017
Updated Aug 5, 2024
Reserved Sep 17, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Sep 16, 2017