Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2015-8918
The archive_string_append function in archive_string.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted cab files, related to "overlapping memcpy."
Exploit prediction scoring system (EPSS) score
EPSS Score
0.02
EPSS Ranking
82.8%
CVSS Severity
CVSS v3 Score
7.5
CVSS v2 Score
5.0
References
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00025.html
http://www.openwall.com/lists/oss-security/2016/06/17/2
http://www.openwall.com/lists/oss-security/2016/06/17/5
http://www.securityfocus.com/bid/91300
https://blog.fuzzing-project.org/47-Many-invalid-memory-access-issues-in-libarchive.html
https://github.com/libarchive/libarchive/issues/506
https://security.gentoo.org/glsa/201701-03
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00025.html
http://www.openwall.com/lists/oss-security/2016/06/17/2
http://www.openwall.com/lists/oss-security/2016/06/17/5
http://www.securityfocus.com/bid/91300
https://blog.fuzzing-project.org/47-Many-invalid-memory-access-issues-in-libarchive.html
https://github.com/libarchive/libarchive/issues/506
https://security.gentoo.org/glsa/201701-03
Products affected by CVE-2015-8918
Libarchive
»
Libarchive
»
Version:
N/A
cpe:2.3:a:libarchive:libarchive:-
Libarchive
»
Libarchive
»
Version:
2.6.0
cpe:2.3:a:libarchive:libarchive:2.6.0
Libarchive
»
Libarchive
»
Version:
2.6.1
cpe:2.3:a:libarchive:libarchive:2.6.1
Libarchive
»
Libarchive
»
Version:
2.6.2
cpe:2.3:a:libarchive:libarchive:2.6.2
Libarchive
»
Libarchive
»
Version:
2.7.0
cpe:2.3:a:libarchive:libarchive:2.7.0
Libarchive
»
Libarchive
»
Version:
2.7.1
cpe:2.3:a:libarchive:libarchive:2.7.1
Libarchive
»
Libarchive
»
Version:
2.8.0
cpe:2.3:a:libarchive:libarchive:2.8.0
Libarchive
»
Libarchive
»
Version:
2.8.1
cpe:2.3:a:libarchive:libarchive:2.8.1
Libarchive
»
Libarchive
»
Version:
2.8.2
cpe:2.3:a:libarchive:libarchive:2.8.2
Libarchive
»
Libarchive
»
Version:
2.8.3
cpe:2.3:a:libarchive:libarchive:2.8.3
Libarchive
»
Libarchive
»
Version:
2.8.4
cpe:2.3:a:libarchive:libarchive:2.8.4
Libarchive
»
Libarchive
»
Version:
2.8.5
cpe:2.3:a:libarchive:libarchive:2.8.5
Libarchive
»
Libarchive
»
Version:
3.0.0a
cpe:2.3:a:libarchive:libarchive:3.0.0a
Libarchive
»
Libarchive
»
Version:
3.0.1b
cpe:2.3:a:libarchive:libarchive:3.0.1b
Libarchive
»
Libarchive
»
Version:
3.0.2
cpe:2.3:a:libarchive:libarchive:3.0.2
Libarchive
»
Libarchive
»
Version:
3.0.3
cpe:2.3:a:libarchive:libarchive:3.0.3
Libarchive
»
Libarchive
»
Version:
3.0.4
cpe:2.3:a:libarchive:libarchive:3.0.4
Libarchive
»
Libarchive
»
Version:
3.1.0
cpe:2.3:a:libarchive:libarchive:3.1.0
Libarchive
»
Libarchive
»
Version:
3.1.1
cpe:2.3:a:libarchive:libarchive:3.1.1
Libarchive
»
Libarchive
»
Version:
3.1.2
cpe:2.3:a:libarchive:libarchive:3.1.2
Libarchive
»
Libarchive
»
Version:
3.1.900a
cpe:2.3:a:libarchive:libarchive:3.1.900a
Libarchive
»
Libarchive
»
Version:
3.1.901a
cpe:2.3:a:libarchive:libarchive:3.1.901a
Novell
»
Suse Linux Enterprise Software Development Kit
»
Version:
12.0
cpe:2.3:a:novell:suse_linux_enterprise_software_development_kit:12.0
Novell
»
Suse Linux Enterprise Desktop
»
Version:
12.0
cpe:2.3:o:novell:suse_linux_enterprise_desktop:12.0
Novell
»
Suse Linux Enterprise Server
»
Version:
12.0
cpe:2.3:o:novell:suse_linux_enterprise_server:12.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved