CVE-2017-14503

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
17/09/2017
Last modified:
20/04/2025

Description

libarchive 3.3.2 suffers from an out-of-bounds read within lha_read_data_none() in archive_read_support_format_lha.c when extracting a specially crafted lha archive, related to lha_crc16.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libarchive:libarchive:3.3.2:*:*:*:*:*:*:*