Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.845151
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-5171-1)
Summary:The remote host is missing an update for the 'lrzip' package(s) announced via the USN-5171-1 advisory.
Description:Summary:
The remote host is missing an update for the 'lrzip' package(s) announced via the USN-5171-1 advisory.

Vulnerability Insight:
It was discovered that Long Range ZIP incorrectly handled certain
specially crafted lrz files. A remote attacker could possibly use this
issue to cause a denial of service (crash) or other unspecified impact.

Affected Software/OS:
'lrzip' package(s) on Ubuntu 18.04.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-8844
https://security.gentoo.org/glsa/202005-01
https://blogs.gentoo.org/ago/2017/05/07/lrzip-heap-based-buffer-overflow-write-in-read_1g-stream-c/
https://github.com/ckolivas/lrzip/issues/70
https://lists.debian.org/debian-lts-announce/2021/08/msg00001.html
Common Vulnerability Exposure (CVE) ID: CVE-2017-8846
https://blogs.gentoo.org/ago/2017/05/07/lrzip-use-after-free-in-read_stream-stream-c/
https://github.com/ckolivas/lrzip/issues/71
Common Vulnerability Exposure (CVE) ID: CVE-2017-9928
http://somevulnsofadlab.blogspot.com/2017/06/lrzipstack-buffer-overflow-in.html
https://github.com/ckolivas/lrzip/issues/74
Common Vulnerability Exposure (CVE) ID: CVE-2017-9929
http://somevulnsofadlab.blogspot.com/2017/06/lrzipstack-buffer-overflow-in_24.html
https://github.com/ckolivas/lrzip/issues/75
Common Vulnerability Exposure (CVE) ID: CVE-2018-10685
https://github.com/ckolivas/lrzip/issues/95
Common Vulnerability Exposure (CVE) ID: CVE-2018-11496
https://github.com/ckolivas/lrzip/issues/96
Common Vulnerability Exposure (CVE) ID: CVE-2018-5650
https://github.com/ckolivas/lrzip/issues/88
Common Vulnerability Exposure (CVE) ID: CVE-2018-5747
https://github.com/ckolivas/lrzip/issues/90
Common Vulnerability Exposure (CVE) ID: CVE-2018-5786
Debian Security Information: DSA-5145 (Google Search)
https://www.debian.org/security/2022/dsa-5145
https://github.com/ckolivas/lrzip/issues/91
https://lists.debian.org/debian-lts-announce/2022/04/msg00012.html
Common Vulnerability Exposure (CVE) ID: CVE-2018-9058
https://github.com/ckolivas/lrzip/issues/93
CopyrightCopyright (C) 2021 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.