CVE-2007-3644
archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (infinite loop) via (1) an end-of-file condition within a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive.
- Affected products
- Libarchive
- Freebsd Libarchive
- ≤ 2.2.3
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 3.9% (89th percentile)
- NVD status
- Modified
- Published
- 2007-07-14
CVE-2007-3644 at NVD
1 known exploit for CVE-2007-3644
Proof-of-concept code and exploit modules indexed by Sploitus