CVE-2015-8934
- EPSS 2.41%
- Veröffentlicht 20.09.2016 14:15:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The copy_from_lzss_window function in archive_read_support_format_rar.c in libarchive 3.2.0 and earlier allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted rar file.
CVE-2015-8933
- EPSS 0.31%
- Veröffentlicht 20.09.2016 14:15:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the archive_read_format_tar_skip function in archive_read_support_format_tar.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted tar file.
CVE-2015-8931
- EPSS 0.27%
- Veröffentlicht 20.09.2016 14:15:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple integer overflows in the (1) get_time_t_max and (2) get_time_t_min functions in archive_read_support_format_mtree.c in libarchive before 3.2.0 allow remote attackers to have unspecified impact via a crafted mtree file, which triggers undefin...
CVE-2015-8932
- EPSS 0.56%
- Veröffentlicht 20.09.2016 14:15:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
The compress_bidder_init function in archive_read_support_filter_compress.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted tar file, which triggers an invalid left shift.
CVE-2015-8930
- EPSS 5.65%
- Veröffentlicht 20.09.2016 14:15:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (infinite loop) via an ISO with a directory that is a member of itself.
CVE-2015-8929
- EPSS 0.27%
- Veröffentlicht 20.09.2016 14:15:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
Memory leak in the __archive_read_get_extract function in archive_read_extract2.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service via a tar file.
CVE-2015-8928
- EPSS 0.3%
- Veröffentlicht 20.09.2016 14:15:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The process_add_entry function in archive_read_support_format_mtree.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mtree file.
CVE-2015-8926
- EPSS 0.41%
- Veröffentlicht 20.09.2016 14:15:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
The archive_read_format_rar_read_data function in archive_read_support_format_rar.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted rar archive.
CVE-2015-8925
- EPSS 0.51%
- Veröffentlicht 20.09.2016 14:15:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The readline function in archive_read_support_format_mtree.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (invalid read) via a crafted mtree file, related to newline parsing.
CVE-2016-4957
- EPSS 57.88%
- Veröffentlicht 05.07.2016 01:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-1547.