CVE-2014-9765
published 2016-04-19CVE-2014-9765: Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted…
PriorityP342high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
4.16%
89.9th percentile
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | xdelta3 | < xdelta3 3.0.8-dfsg-1.1 (bookworm) | xdelta3 3.0.8-dfsg-1.1 (bookworm) |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| xdelta | xdelta3 | <= 3.0.8 | — |
| xdelta | xdelta3 | >= 0 < 3.0.8-dfsg-1.1 | 3.0.8-dfsg-1.1 |
| xdelta | xdelta3 | >= 0 < 3.0.8-dfsg-1.1 | 3.0.8-dfsg-1.1 |
| xdelta | xdelta3 | >= 0 < 3.0.8-dfsg-1.1 | 3.0.8-dfsg-1.1 |
| xdelta | xdelta3 | >= 0 < 3.0.8-dfsg-1.1 | 3.0.8-dfsg-1.1 |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
xdelta3 vulnerability
vendor_ubuntu·2016-02-17
CVE-2014-9765 xdelta3 vulnerability
Title: xdelta3 vulnerability
Summary: xdelta3 could be made to crash or run programs if it opened a specially
crafted file.
It was discovered that xdelta3 incorrectly handled certain files. If a user
or automated system were tricked into processing a specially-crafted file,
a remote attacker could use this issue to cause xdelta3 to crash, resulting
in a denial of service, or possibly execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
xdelta: buffer overflow in main_get_appheader
vendor_redhat·2014-10-12·CVSS 8.8
CVE-2014-9765 [HIGH] CWE-121 xdelta: buffer overflow in main_get_appheader
xdelta: buffer overflow in main_get_appheader
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
Package: xdelta (Red Hat Enterprise Linux 5) - Not affected
Package: xdelta (Red Hat Enterprise Linux 6) - Not affected
Package: xdelta (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2014-9765: xdelta3 - Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 ...
vendor_debian·2014·CVSS 8.8
CVE-2014-9765 [HIGH] CVE-2014-9765: xdelta3 - Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 ...
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
Scope: local
bookworm: resolved (fixed in 3.0.8-dfsg-1.1)
bullseye: resolved (fixed in 3.0.8-dfsg-1.1)
forky: resolved (fixed in 3.0.8-dfsg-1.1)
sid: resolved (fixed in 3.0.8-dfsg-1.1)
trixie: resolved (fixed in 3.0.8-dfsg-1.1)
GHSA
GHSA-g659-9pjq-jf3x: Buffer overflow in the main_get_appheader function in xdelta3-main
ghsa_unreviewed·2022-05-14
CVE-2014-9765 [HIGH] CWE-119 GHSA-g659-9pjq-jf3x: Buffer overflow in the main_get_appheader function in xdelta3-main
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
OSV
CVE-2014-9765: Buffer overflow in the main_get_appheader function in xdelta3-main
osv·2016-04-19·CVSS 8.8
CVE-2014-9765 [HIGH] CVE-2014-9765: Buffer overflow in the main_get_appheader function in xdelta3-main
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-9765 xdelta: buffer overflow in main_get_appheader [fedora-22]
bugzilla·2016-02-08·CVSS 8.8
CVE-2014-9765 [HIGH] CVE-2014-9765 xdelta: buffer overflow in main_get_appheader [fedora-22]
CVE-2014-9765 xdelta: buffer overflow in main_get_appheader [fedora-22]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
[bug automatically created by: add-tracking-bugs]
Discussion
Bugzilla
CVE-2014-9765 xdelta: buffer overflow in main_get_appheader
bugzilla·2016-02-08·CVSS 8.8
CVE-2014-9765 [HIGH] CVE-2014-9765 xdelta: buffer overflow in main_get_appheader
CVE-2014-9765 xdelta: buffer overflow in main_get_appheader
A buffer overflow vulnerability in xdelta3 was reported, allowing arbitrary code execution from input files on some systems.
Upstream patch:
https://github.com/jmacd/xdelta/commit/969e65d3a5d70442f5bafd726bcef47a0b48edd8
Discussion:
Fedora 23, package xdelta, is not vulnerable because it currently has xdelta-3.0.9-1.fc23 in stable
---
Created xdelta tracking bugs for this issue:
Affects: fedora-22 [bug 1305464]
---
External references:
(none)
---
Currently no plan to address this in Red Hat Enterprise Linux 7. xdelta is a leaf package, not required/used by other distribution components.
http://lists.opensuse.org/opensuse-updates/2016-02/msg00125.htmlhttp://lists.opensuse.org/opensuse-updates/2016-02/msg00131.htmlhttp://www.debian.org/security/2016/dsa-3484http://www.openwall.com/lists/oss-security/2016/02/08/1http://www.openwall.com/lists/oss-security/2016/02/08/2http://www.securityfocus.com/bid/83109http://www.ubuntu.com/usn/USN-2901-1https://github.com/jmacd/xdelta-devel/commit/ef93ff74203e030073b898c05e8b4860b5d09ef2https://security.gentoo.org/glsa/201701-40http://lists.opensuse.org/opensuse-updates/2016-02/msg00125.htmlhttp://lists.opensuse.org/opensuse-updates/2016-02/msg00131.htmlhttp://www.debian.org/security/2016/dsa-3484http://www.openwall.com/lists/oss-security/2016/02/08/1http://www.openwall.com/lists/oss-security/2016/02/08/2http://www.securityfocus.com/bid/83109http://www.ubuntu.com/usn/USN-2901-1https://github.com/jmacd/xdelta-devel/commit/ef93ff74203e030073b898c05e8b4860b5d09ef2https://security.gentoo.org/glsa/201701-40
2016-04-19
Published