Severity
7.5HIGH
EPSS
5.2%
top 10.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 21
Latest updateMay 13

Description

The sandboxing code in libarchive 3.2.0 and earlier mishandles hardlink archive entries of non-zero data size, which might allow remote attackers to write to arbitrary files via a crafted archive file.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages9 packages

Debianlibarchive< 3.2.1-4+3
Ubuntulibarchive< 3.1.2-7ubuntu2.4+1
NVDoracle/linux6, 7+1
NVDredhat/openshift3.1, 3.2+1

Also affects: Enterprise Linux 7.2

Patches

🔴Vulnerability Details

4
GHSA
GHSA-88p3-99rj-qvrx: The sandboxing code in libarchive 32022-05-13
OSV
libarchive vulnerabilities2017-03-09
CVEList
CVE-2016-5418: The sandboxing code in libarchive 32016-09-21
OSV
CVE-2016-5418: The sandboxing code in libarchive 32016-09-21

📋Vendor Advisories

3
Ubuntu
libarchive vulnerabilities2017-03-09
Red Hat
libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite2016-09-12
Debian
CVE-2016-5418: libarchive - The sandboxing code in libarchive 3.2.0 and earlier mishandles hardlink archive ...2016

💬Community

4
Bugzilla
CVE-2016-5418 libarchive3: libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite [epel-6]2016-09-12
Bugzilla
CVE-2016-5418 libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite [epel-5]2016-09-12
Bugzilla
CVE-2016-5418 libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite [fedora-all]2016-09-12
Bugzilla
CVE-2016-5418 libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite2016-08-02
CVE-2016-5418 (HIGH CVSS 7.5) | The sandboxing code in libarchive 3 | cvebase.io