CVE-2020-9308
HIGH8.8EPSS 0.70%發布日:2020/2/20修改日:2025/12/3
也稱為:ALPINE-CVE-2020-9308
描述
archive_read_support_format_rar5.c in libarchive before 3.4.2 attempts to unpack a RAR5 file with an invalid or corrupted header (such as a header size of zero), leading to a SIGSEGV or possibly unspecified other impact.
受影響套件(2)
- Alpine/libarchivefrom 0, < 3.4.2-r0
- Debian/libarchivefrom 0, < 3.4.0-2
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH8.8 | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |