PT-2017-8725 · Arch Linux · Pacman
Tobias Stoeckmann
·
Published
2017-01-30
·
Updated
2020-04-21
·
CVE-2016-5434
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
pacman version 5.0.1
Description
The issue allows remote attackers to cause a denial of service, resulting in either an infinite loop or an out-of-bounds read, by utilizing a crafted signature file.
Recommendations
For version 5.0.1, consider updating to a newer version that addresses this issue, as no specific fix is provided for this version.
Exploit
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pacman