Assigner | microsoft |
Reserved | 2023-11-28 |
Published | 2024-01-09 |
Updated | 2024-07-19 |
Description
Windows libarchive Remote Code Execution Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C |
Problem types
CWE-122: Heap-based Buffer Overflow
Product status
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-20697 (Windows Libarchive Remote Code Execution Vulnerability)
https://github.com/advisories/GHSA-w6xv-37jv-7cjr
http://www.openwall.com/lists/oss-security/2024/06/05/1
http://www.openwall.com/lists/oss-security/2024/06/04/2