2024-06-08 14:03:10 +00:00
{
"id" : "CVE-2024-37407" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2024-06-08T13:15:58.337" ,
2024-06-10 04:03:18 +00:00
"lastModified" : "2024-06-10T02:52:08.267" ,
"vulnStatus" : "Awaiting Analysis" ,
2024-06-08 14:03:10 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled. This occurs in slurp_central_directory in archive_read_support_format_zip.c."
}
] ,
"metrics" : { } ,
"references" : [
{
"url" : "https://github.com/libarchive/libarchive/commit/b6a979481b7d77c12fa17bbed94576b63bbcb0c0" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://github.com/libarchive/libarchive/pull/2145" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://github.com/libarchive/libarchive/releases/tag/v3.7.4" ,
"source" : "cve@mitre.org"
}
]
}