4.3
CVE-2007-3645
- EPSS 12.02%
- Veröffentlicht 15.07.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle secteam@freebsd.org
- CVE-Watchlists
- Unerledigt
archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (crash) via (1) an end-of-file condition within a tar header that follows a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive, which results in a NULL pointer dereference, a different issue than CVE-2007-3644.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Freebsd ≫ Libarchive Version <= 2.2.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 12.02% | 0.935 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|