Asymmetric denial of service In unrar-free
Description
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application. NOTE: one of the several test cases in the references may be the same as what was separately reported as CVE-2017-14121.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 1:0.0.1+cvs20140707-4 | ||
debian 14 | 1:0.0.1+cvs20140707-4 | ||
debian 12 | 1:0.0.1+cvs20140707-4 |
Aliases
1. 2. 3. 4. 5.