CVE-2016-4301 REJECTED

Stack-based buffer overflow in the parse_device function in archive_read_support_format_mtree.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a crafted mtree file.

EPSS 1.37% · 80.1th percentile

Risk Scores

EPSS Score
1.37%
80.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlibarchive0, 3.1.2-11build1

Timeline

References

Open in Interactive Console →