|
|
| |
| Extracting a maliciously crafted archive may lead to an unexpected application termination or arbitrary code execution |
| |
Credit:
The information has been provided by Felix Groebert.
|
| |
Vulnerable Systems:
* Apple OS X Lion v10.7.4 libarchive
Multiple buffer overflows existed in the handling of tar archives and iso9660 files.
Vendor Status:
Apple had issued an update for this vulnerability
Patch Availability:
http://support.apple.com/kb/HT5281
CVE Information:
CVE-2011-1777
CVE-2011-1778
Disclosure Timeline:
Initial Release May 09, 2012
|
|
blog comments powered by
|