Total vulnerabilities in the database
The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code via the PartitionRef field in the Long Allocation Descriptor in a UDF file.
Software | From | Fixed in |
---|---|---|
opensuse / opensuse | 13.2 | 13.2.x |
debian / debian_linux | 8.0 | 8.0.x |
debian / debian_linux | 9.0 | 9.0.x |
7-zip / 7-zip | 9.20 | 9.20.x |
7-zip / 7-zip | 15.05-beta | 15.05-beta.x |