CVE-2010-2800
published 2010-08-09CVE-2010-2800: The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab…
PriorityP416medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
2.29%
81.3th percentile
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cabextract_project | cabextract | <= 1.2 | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | — | — |
| cabextract_project | cabextract | >= 0 < 1.3-1 | 1.3-1 |
| cabextract_project | cabextract | >= 0 < 1.3-1 | 1.3-1 |
| cabextract_project | cabextract | >= 0 < 1.3-1 | 1.3-1 |
| cabextract_project | cabextract | >= 0 < 1.3-1 | 1.3-1 |
| debian | cabextract | < cabextract 1.3-1 (bookworm) | cabextract 1.3-1 (bookworm) |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j7gx-hgxw-46mm: The MS-ZIP decompressor in cabextract before 1
ghsa_unreviewed·2022-05-13
CVE-2010-2800 [MEDIUM] GHSA-j7gx-hgxw-46mm: The MS-ZIP decompressor in cabextract before 1
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
OSV
CVE-2010-2800: The MS-ZIP decompressor in cabextract before 1
osv·2010-08-09·CVSS 4.3
CVE-2010-2800 [MEDIUM] CVE-2010-2800: The MS-ZIP decompressor in cabextract before 1
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
Debian
CVE-2010-2800: cabextract - The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to caus...
vendor_debian·2010·CVSS 4.3
CVE-2010-2800 [MEDIUM] CVE-2010-2800: cabextract - The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to caus...
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
Scope: local
bookworm: resolved (fixed in 1.3-1)
bullseye: resolved (fixed in 1.3-1)
forky: resolved (fixed in 1.3-1)
sid: resolved (fixed in 1.3-1)
trixie: resolved (fixed in 1.3-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-2800 CVE-2010-2801 cabextract various flaws [fedora-all]
bugzilla·2010-08-02·CVSS 4.3
CVE-2010-2800 [MEDIUM] CVE-2010-2800 CVE-2010-2801 cabextract various flaws [fedora-all]
CVE-2010-2800 CVE-2010-2801 cabextract various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=620450
Please note: this issue affects multiple supporte
Bugzilla
CVE-2010-2800 cabextract: Infinite loop in MS-ZIP and Quantum decoders
bugzilla·2010-08-02·CVSS 4.3
CVE-2010-2800 [MEDIUM] CVE-2010-2800 cabextract: Infinite loop in MS-ZIP and Quantum decoders
CVE-2010-2800 cabextract: Infinite loop in MS-ZIP and Quantum decoders
A deficiency has been reported in the way cabextract extracted
certain Cabinet (*.cab) files, using the MZ-ZIP and Quantum decompressors.
If a local user was tricked into opening a specially-crafted *.cab
file, it could lead to infinite loop.
References:
[1] http://bugs.gentoo.org/show_bug.cgi?id=329891
Upstream patches:
[2] http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=90
[3] http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=95
[4] http://libmspack.svn.sourceforge.net/viewvc/libmspack/libmspack/trunk/mspack/
Discussion:
This issue affects the versions of the cabextract package,
as shipped with Fedora release of 12 and 13.
Please fix.
---
Created cabextra
http://bugs.gentoo.org/show_bug.cgi?id=329891http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=90http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=95http://marc.info/?l=oss-security&m=128076168623266&w=2http://marc.info/?l=oss-security&m=128077976522470&w=2http://www.cabextract.org.uk/#changeshttp://www.vupen.com/english/advisories/2010/1903https://bugzilla.redhat.com/show_bug.cgi?id=620450http://bugs.gentoo.org/show_bug.cgi?id=329891http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=90http://libmspack.svn.sourceforge.net/viewvc/libmspack?view=revision&revision=95http://marc.info/?l=oss-security&m=128076168623266&w=2http://marc.info/?l=oss-security&m=128077976522470&w=2http://www.cabextract.org.uk/#changeshttp://www.vupen.com/english/advisories/2010/1903https://bugzilla.redhat.com/show_bug.cgi?id=620450
2010-08-09
Published