CVE-2015-8919
20.09.2016, 14:15
The lha_read_file_extended_header function in archive_read_support_format_lha.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (out-of-bounds heap) via a crafted (1) lzh or (2) lha file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 15.10 |
| canonical | ubuntu_linux | 16.04 |
| libarchive | libarchive | 𝑥 ≤ 3.1.901a |
| novell | suse_linux_enterprise_software_development_kit | 12.0:sp1 |
| novell | suse_linux_enterprise_desktop | 12.0:sp1 |
| novell | suse_linux_enterprise_server | 12.0:sp1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References