vulnerability

FreeBSD: p7zip -- heap overflow vulnerability (CVE-2016-2334)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
May 11, 2016
Added
Jul 20, 2016
Modified
Oct 30, 2017

Description



Cisco Talos reports:

An exploitable heap overflow vulnerability exists in the
NArchive::NHfs::CHandler::ExtractZlibFile method functionality of
7zip that can lead to arbitrary code execution.

Solution

freebsd-upgrade-package-p7zip
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.