Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Debian Jessie DSA-3599-1 Out-Of-Bound Read DoS in P7zip

debian
Calendar Grey June 9, 2016
Debian Logo
Update p7zip packages to address potential out-of-bounds read vulnerabilities that may result in Denial of Service (DoS) or arbitrary code execution.
Marcin 'Icewall' Noga of Cisco Talos discovered an out-of-bound read vulnerability in the CInArchive::ReadFileItem method in p7zip, a 7zr file archiver with high compression ratio

Summary

For the stable distribution (jessie), this problem has been fixed in
version 9.20.1~dfsg.1-4.1+deb8u2.

For the testing distribution (stretch), this problem has been fixed
in version 15.14.1+dfsg-2.

For the unstable distribution (sid), this problem has been fixed in
version 15.14.1+dfsg-2.

We recommend that you upgrade your p7zip packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: p7zip
CVE ID: CVE-2016-2335

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here