The libarchive library in FreeBSD 6-STABLE after 2006-09-05 and before 2006-11-08 allows context-dependent attackers to cause a denial of service (CPU consumption) via a malformed archive that causes libarchive to skip a region past the actual end of the archive, which triggers an infinite loop that attempts to read more data.
References
Configurations
History
21 Nov 2024, 00:20
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/22723 - | |
References | () http://secunia.com/advisories/22801 - | |
References | () http://security.freebsd.org/advisories/FreeBSD-SA-06:24.libarchive.asc - Exploit, Vendor Advisory | |
References | () http://securitytracker.com/id?1017199 - | |
References | () http://www.securityfocus.com/bid/20961 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/30137 - |
Information
Published : 2006-11-09 00:07
Updated : 2024-11-21 00:20
NVD link : CVE-2006-5680
Mitre link : CVE-2006-5680
CVE.ORG link : CVE-2006-5680
JSON object : View
Products Affected
freebsd
- freebsd
CWE