libalpm, as used in pacman 5.0.1, allows remote attackers to cause a denial of service (infinite loop or out-of-bounds read) via a crafted signature file.
References
Link | Resource |
---|---|
https://lists.archlinux.org/pipermail/pacman-dev/2016-June/021148.html | Exploit Patch Third Party Advisory |
http://www.openwall.com/lists/oss-security/2016/06/14/6 | Exploit Mailing List Third Party Advisory |
http://www.openwall.com/lists/oss-security/2016/06/11/4 | Exploit Mailing List Third Party Advisory |
http://www.openwall.com/lists/oss-security/2020/04/21/9 |
Configurations
Information
Published : 2017-01-30 14:59
Updated : 2020-04-21 14:15
NVD link : CVE-2016-5434
Mitre link : CVE-2016-5434
JSON object : View
Products Affected
pacman_project
- pacman