A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buffer overflow. This could potentially allow for arbitrary code execution on the affected system.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-03-30 08:16
Updated : 2026-09-01 09:16
NVD link : CVE-2026-5121
Mitre link : CVE-2026-5121
CVE.ORG link : CVE-2026-5121
JSON object : View
Products Affected
redhat
- enterprise_linux
- openshift_container_platform
- hardened_images
libarchive
- libarchive
CWE
CWE-190
Integer Overflow or Wraparound
