CVE-2010-2801
Publication date 9 August 2010
Last updated 24 July 2024
Ubuntu priority
Description
Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Quantum archive in a .cab file, related to the libmspack library.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| cabextract | ||
Patch details
| Package | Patch details |
|---|---|
| cabextract |