CVE-2011-1777
Publication date 2 December 2011
Last updated 24 July 2024
Ubuntu priority
Multiple buffer overflows in the (1) heap_add_entry and (2) relocate_dir functions in archive_read_support_format_iso9660.c in libarchive through 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ISO9660 image.
Status
Package | Ubuntu Release | Status |
---|---|---|
libarchive | 11.10 oneiric |
Fixed 2.8.4-1ubuntu0.11.10.1
|
11.04 natty |
Fixed 2.8.4-1ubuntu0.11.04.1
|
|
10.10 maverick |
Fixed 2.8.4-1ubuntu0.10.10.1
|
|
10.04 LTS lucid |
Fixed 2.8.0-2ubuntu0.1
|
|
8.04 LTS hardy | Ignored end of life |
Patch details
Package | Patch details |
---|---|
libarchive |
References
Related Ubuntu Security Notices (USN)
- USN-1310-1
- libarchive vulnerabilities
- 19 December 2011