Denial of Service Vulnerability in Libarchive by FreeBSD
CVE-2007-3645
Currently unrated
What is CVE-2007-3645?
Libarchive, before version 2.2.4, is prone to a denial of service vulnerability that can be triggered by user-assisted remote attackers. This vulnerability surfaces when a crafted TAR archive contains either an end-of-file condition that improperly follows a PAX extension header or contains a malformed PAX extension header. Exploitation leads to a NULL pointer dereference, causing the application to crash. It's crucial for users and administrators to implement updates and effective security measures to safeguard their systems against this vulnerability.