Home[1] Files[2] News[3] &[SERVICES_TAB] Contact[4] Add New[5]
- Debian Security Advisory 5806-1[6]
- Authored by Debian[7] | Site debian.org[8]
-
Debian Linux Security Advisory 5806-1 - A heap-based out-of-bounds write vulnerability was discovered in libarchive, a multi-format archive and compression library, which may result in the execution of arbitrary code if a specially crafted RAR archive is processed.
- systems | linux[9], debian[10]
- advisories | CVE-2024-20696[11]
- SHA-256 |
fce1169174ab0f1c9d395e5ce9be902d51713b7e713e94db3c679c68e190abfe - Download[12] | Favorite[13] | View[14]
Change Mirror[15] Download[16]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5806-1Cette adresse e-mail est protégée contre les robots spammeurs. Vous devez activer le JavaScript pour la visualiser.
https://www.debian.org/security/ Salvatore Bonaccorso
November 09, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : libarchive
CVE ID : CVE-2024-20696
Debian Bug : 1086155
A heap-based out-of-bounds write vulnerability was discovered in
libarchive, a multi-format archive and compression library, which may
result in the execution of arbitrary code if a specially crafted RAR
archive is processed.
For the stable distribution (bookworm), this problem has been fixed in
version 3.6.2-1+deb12u2.
We recommend that you upgrade your libarchive packages.
For the detailed security status of libarchive please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/libarchive
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list:Cette adresse e-mail est protégée contre les robots spammeurs. Vous devez activer le JavaScript pour la visualiser.
-----BEGIN PGP SIGNATURE-----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=2Rv1
-----END PGP SIGNATURE-----
File Tags
- ActiveX[22] (933)
- Advisory[23] (87,467)
- Arbitrary[24] (17,187)
- BBS[25] (2,859)
- Bypass[26] (1,936)
- CGI[27] (1,049)
- Code Execution[28] (7,977)
- Conference[29] (693)
- Cracker[30] (845)
- CSRF[31] (3,440)
- DoS[32] (25,449)
- Encryption[33] (2,397)
- Exploit[34] (54,488)
- File Inclusion[35] (4,280)
- File Upload[36] (1,028)
- Firewall[37] (822)
- Info Disclosure[38] (2,939)
- Intrusion Detection[39] (923)
- Java[40] (3,166)
- JavaScript[41] (911)
- Kernel[42] (7,358)
- Local[43] (14,892)
- Magazine[44] (587)
- Overflow[45] (13,272)
- Perl[46] (1,435)
- PHP[47] (5,331)
- Proof of Concept[48] (2,421)
- Protocol[49] (3,760)
- Python[50] (1,675)
- Remote[51] (31,985)
- Root[52] (3,677)
- Rootkit[53] (531)
- Ruby[54] (645)
- Scanner[55] (1,662)
- Security Tool[56] (8,068)
- Shell[57] (3,326)
- Shellcode[58] (1,219)
- Sniffer[59] (905)
- Spoof[60] (2,317)
- SQL Injection[61] (16,752)
- TCP[62] (2,465)
- Trojan[63] (690)
- UDP[64] (921)
- Virus[65] (675)
- Vulnerability[66] (33,268)
- Web[67] (10,178)
- Whitepaper[68] (3,786)
- x86[69] (970)
- XSS[70] (18,349)
- Other[71]
File Archives
- November 2024[72]
- October 2024[73]
- September 2024[74]
- August 2024[75]
- July 2024[76]
- June 2024[77]
- May 2024[78]
- April 2024[79]
- March 2024[80]
- February 2024[81]
- January 2024[82]
- December 2023[83]
- Older[84]
Systems
- AIX[85] (430)
- Apple[86] (2,126)
- BSD[87] (378)
- CentOS[88] (61)
- Cisco[89] (1,954)
- Debian[90] (7,158)
- Fedora[91] (1,693)
- FreeBSD[92] (1,247)
- Gentoo[93] (4,604)
- HPUX[94] (881)
- iOS[95] (393)
- iPhone[96] (108)
- IRIX[97] (220)
- Juniper[98] (71)
- Linux[99] (51,830)
- Mac OS X[100] (696)
- Mandriva[101] (3,105)
- NetBSD[102] (256)
- OpenBSD[103] (490)
- RedHat[104] (17,245)
- Slackware[105] (941)
- Solaris[106] (1,615)
- SUSE[107] (1,444)
- Ubuntu[108] (9,969)
- UNIX[109] (9,474)
- UnixWare[110] (188)
- Windows[111] (6,784)
- Other[112]
- Services
- Security Services[123]
- Hosting By
- Rokasec[124]
Read more https://packetstormsecurity.com/files/182552/dsa-5806-1.txt


