Multiple use-after-free vulnerabilities in libarchive 2.8.4 and 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted (1) TAR archive or (2) ISO9660 image.
| Software | From | Fixed in |
|---|---|---|
| freebsd / libarchive | 2.8.5 | 2.8.5.x |
| freebsd / libarchive | 2.8.4 | 2.8.4.x |