The lha_read_file_extended_header function in archive_read_support_format_lha.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (out-of-bounds heap) via a crafted (1) lzh or (2) lha file.
| Software | From | Fixed in |
|---|---|---|
| canonical / ubuntu_linux | 12.04 | 12.04.x |
| canonical / ubuntu_linux | 16.04 | 16.04.x |
| canonical / ubuntu_linux | 15.10 | 15.10.x |
| canonical / ubuntu_linux | 14.04 | 14.04.x |
| libarchive / libarchive | - | 3.1.901a.x |
| novell / suse_linux_enterprise_server | 12.0-sp1 | 12.0-sp1.x |
| novell / suse_linux_enterprise_desktop | 12.0-sp1 | 12.0-sp1.x |
| novell / suse_linux_enterprise_software_development_kit | 12.0-sp1 | 12.0-sp1.x |