Denial of Service Vulnerability in Libarchive Affects Multiple Platforms
CVE-2015-8920
5.5MEDIUM
Key Information:
- Vendor
Novell
- Status
- Vendor
- CVE Published:
- 20 September 2016
What is CVE-2015-8920?
The _ar_read_header function in Libarchive prior to version 3.2.0 is vulnerable to a denial of service attack that allows remote attackers to trigger an out-of-bounds stack read through specially crafted ar files. This vulnerability poses significant risks, as successful exploitation can lead to application crashes and potential service disruptions across affected platforms.