The copy_from_lzss_window function in archive_read_support_format_rar.c in libarchive 3.2.0 and earlier allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted rar file.
| Software | From | Fixed in |
|---|---|---|
| suse / linux_enterprise_software_development_kit | 12-sp1 | 12-sp1.x |
| suse / linux_enterprise_server | 12-sp1 | 12-sp1.x |
| suse / linux_enterprise_desktop | 12-sp1 | 12-sp1.x |
| canonical / ubuntu_linux | 12.04 | 12.04.x |
| canonical / ubuntu_linux | 16.04 | 16.04.x |
| canonical / ubuntu_linux | 15.10 | 15.10.x |
| canonical / ubuntu_linux | 14.04 | 14.04.x |
| libarchive / libarchive | - | 3.1.901a.x |