Description
Buffer overflow in cpio 2.6-8.FC4 on 64-bit platforms, when creating a cpio archive, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a file whose size is represented by more than 8 digits.
CVSS vector
AV:L/AC:H/C:P/I:P/A:PExploitability: 1.9 | Impact: 6.4 Affected Packages2 packages
🔴Vulnerability Details
3GHSAGHSA-gf47-4488-9gh6: Buffer overflow in cpio 2↗2022-05-03 ▶ OSVCVE-2005-4268: Buffer overflow in cpio 2↗2005-12-15 ▶ CVEListCVE-2005-4268: Buffer overflow in cpio 2↗2005-12-15 ▶ 📋Vendor Advisories
4BSDFreeBSD-SA-06:03.cpio: Multiple vulnerabilities cpio↗2006-01-11 ▶ Ubuntucpio vulnerability↗2006-01-03 ▶ Red Hatcpio large filesize buffer overflow↗2005-11-07 ▶ DebianCVE-2005-4268: cpio - Buffer overflow in cpio 2.6-8.FC4 on 64-bit platforms, when creating a cpio arch...↗2005 ▶ 💬Community
3BugzillaCVE-2005-4268 cpio large filesize buffer overflow↗2007-02-19 ▶ BugzillaCVE-2005-4268 cpio large filesize buffer overflow↗2005-11-10 ▶ BugzillaCVE-2005-4268 cpio large filesize buffer overflow↗2005-11-08 ▶