PT-2018-12462 · Gnu+2 · Gnu Libextractor+2

Published

2018-07-13

·

Updated

2020-11-23

·

CVE-2018-14346

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GNU Libextractor versions prior to 1.7
Description The issue is related to a stack-based buffer overflow in the ec read file func function, located in unzip.c.
Recommendations For GNU Libextractor versions prior to 1.7, update to version 1.7 or later to resolve the issue.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2011
CVE-2018-14346
DLA-1478-1
DSA-4290-1
MGASA-2018-0388
USN-4641-1

Affected Products

Alt Linux
Gnu Libextractor
Ubuntu