CVE-2017-14166 (NVD)

2017-09-06

libarchive 3.3.2 allows remote attackers to cause a denial of service (xml_data heap-based buffer over-read and application crash) via a crafted xar archive, related to the mishandling of empty strings in the atol8 function in archive_read_support_format_xar.c.

libarchive - Tree: fa7438a0ff

(? files)

Filter Settings
Files
Navigation
Patch data:

(on by default)


Patched area: