CVE-2011-1777

Multiple buffer overflows in the (1) heap_add_entry and (2) relocate_dir functions in archive_read_support_format_iso9660.c in libarchive through 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ISO9660 image.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:freebsd:libarchive:*:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.0:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.1:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.2:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.2.3:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.3:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.4:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.5:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.6:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.7.0:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.7.1:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.8.0:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.8.1:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.8.2:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.8.3:*:*:*:*:*:*:*
cpe:2.3:a:freebsd:libarchive:2.8.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2012-04-13 20:55

Updated : 2024-02-28 12:00


NVD link : CVE-2011-1777

Mitre link : CVE-2011-1777

CVE.ORG link : CVE-2011-1777


JSON object : View

Products Affected

freebsd

  • libarchive
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer