archive_read_format_rar_read_data in archive_read_support_format_rar.c in libarchive before 3.4.0 has a use-after-free in a certain ARCHIVE_FAILED situation, related to Ppmd7_DecodeSymbol.
References
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2019-10-24 14:15
Updated : 2019-11-01 11:15
NVD link : CVE-2019-18408
Mitre link : CVE-2019-18408
JSON object : View
Products Affected
canonical
- ubuntu_linux
linux
- linux_kernel
debian
- debian_linux
libarchive
- libarchive
CWE
CWE-416
Use After Free
