CVE-2016-6250

Integer overflow in the ISO9660 writer in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via vectors related to verifying filename lengths when writing an ISO9660 archive, which trigger a buffer overflow.
Configurations

Configuration 1 (hide)

cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:libarchive:libarchive:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2016-09-21 14:25

Updated : 2023-12-10 11:46


NVD link : CVE-2016-6250

Mitre link : CVE-2016-6250

CVE.ORG link : CVE-2016-6250


JSON object : View

Products Affected

oracle

  • linux

libarchive

  • libarchive
CWE
CWE-190

Integer Overflow or Wraparound