Bug 1059139 - (CVE-2017-14501) VUL-1: CVE-2017-14501: bsdtar,libarchive: An out-of-bounds read flaw exists in parse_file_info inarchive_read_support_format_iso9660.c in libarchive 3.3.2 when extracting aspecially crafted iso9660 iso file, related toarchive_read_format
(CVE-2017-14501)
VUL-1: CVE-2017-14501: bsdtar,libarchive: An out-of-bounds read flaw exists i...
Status: RESOLVED FIXED
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P4 - Low : Normal
: ---
Assigned To: Security Team bot
Security Team bot
https://smash.suse.de/issue/192113/
CVSSv2:SUSE:CVE-2017-14501:2.1:(AV:L/...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2017-09-18 12:09 UTC by Marcus Meissner
Modified: 2020-07-10 13:33 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments
oob.iso (63.97 KB, application/octet-stream)
2017-09-18 12:12 UTC, Marcus Meissner
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Marcus Meissner 2017-09-18 12:09:42 UTC
CVE-2017-14501

An out-of-bounds read flaw exists in parse_file_info in
archive_read_support_format_iso9660.c in libarchive 3.3.2 when extracting a
specially crafted iso9660 iso file, related to
archive_read_format_iso9660_read_header.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-14501
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=875966
https://github.com/libarchive/libarchive/issues/949
Comment 1 Marcus Meissner 2017-09-18 12:12:08 UTC
Created attachment 740894 [details]
oob.iso

QA REPRODUCER:

valgrind bsdtar -xOf oob.iso


should not show "Invalid read of size 1"
Comment 2 Adrian Schröter 2018-10-10 14:58:33 UTC
fix for sle 12 and 15 on the way
Comment 5 Swamp Workflow Management 2018-10-30 17:09:30 UTC
SUSE-SU-2018:3571-1: An update that fixes three vulnerabilities is now available.

Category: security (moderate)
Bug References: 1059100,1059134,1059139
CVE References: CVE-2017-14501,CVE-2017-14502,CVE-2017-14503
Sources used:
SUSE Linux Enterprise Module for Development Tools 15 (src):    libarchive-3.3.2-3.3.2
SUSE Linux Enterprise Module for Basesystem 15 (src):    libarchive-3.3.2-3.3.2
Comment 6 Swamp Workflow Management 2018-11-07 14:10:37 UTC
SUSE-SU-2018:3640-1: An update that fixes 7 vulnerabilities is now available.

Category: security (moderate)
Bug References: 1032089,1037008,1037009,1057514,1059100,1059134,1059139
CVE References: CVE-2016-10209,CVE-2016-10349,CVE-2016-10350,CVE-2017-14166,CVE-2017-14501,CVE-2017-14502,CVE-2017-14503
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP3 (src):    libarchive-3.1.2-26.3.1
SUSE Linux Enterprise Server 12-SP3 (src):    libarchive-3.1.2-26.3.1
SUSE Linux Enterprise Desktop 12-SP3 (src):    libarchive-3.1.2-26.3.1
Comment 7 Swamp Workflow Management 2018-11-09 23:09:03 UTC
openSUSE-SU-2018:3690-1: An update that fixes three vulnerabilities is now available.

Category: security (moderate)
Bug References: 1059100,1059134,1059139
CVE References: CVE-2017-14501,CVE-2017-14502,CVE-2017-14503
Sources used:
openSUSE Leap 15.0 (src):    libarchive-3.3.2-lp150.2.3.1
Comment 8 Swamp Workflow Management 2018-11-09 23:30:41 UTC
openSUSE-SU-2018:3717-1: An update that fixes 7 vulnerabilities is now available.

Category: security (moderate)
Bug References: 1032089,1037008,1037009,1057514,1059100,1059134,1059139
CVE References: CVE-2016-10209,CVE-2016-10349,CVE-2016-10350,CVE-2017-14166,CVE-2017-14501,CVE-2017-14502,CVE-2017-14503
Sources used:
openSUSE Leap 42.3 (src):    libarchive-3.1.2-20.3.1
Comment 9 Swamp Workflow Management 2018-12-07 11:12:33 UTC
SUSE-SU-2018:3640-2: An update that fixes 7 vulnerabilities is now available.

Category: security (moderate)
Bug References: 1032089,1037008,1037009,1057514,1059100,1059134,1059139
CVE References: CVE-2016-10209,CVE-2016-10349,CVE-2016-10350,CVE-2017-14166,CVE-2017-14501,CVE-2017-14502,CVE-2017-14503
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP4 (src):    libarchive-3.1.2-26.3.1
SUSE Linux Enterprise Server 12-SP4 (src):    libarchive-3.1.2-26.3.1
SUSE Linux Enterprise Desktop 12-SP4 (src):    libarchive-3.1.2-26.3.1
Comment 12 Swamp Workflow Management 2019-11-27 17:17:35 UTC
SUSE-SU-2019:14233-1: An update that fixes four vulnerabilities is now available.

Category: security (moderate)
Bug References: 1005070,1059139,985601,985706
CVE References: CVE-2015-8915,CVE-2015-8925,CVE-2016-8687,CVE-2017-14503
Sources used:
SUSE Linux Enterprise Debuginfo 11-SP4 (src):    bsdtar-2.5.5-10.8.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 13 Swamp Workflow Management 2019-11-28 20:21:25 UTC
SUSE-SU-2019:3092-1: An update that fixes 10 vulnerabilities is now available.

Category: security (moderate)
Bug References: 1032089,1037008,1037009,1059134,1059139,1120653,1120654,1124341,1124342,1155079
CVE References: CVE-2016-10209,CVE-2016-10349,CVE-2016-10350,CVE-2017-14501,CVE-2017-14502,CVE-2018-1000877,CVE-2018-1000878,CVE-2019-1000019,CVE-2019-1000020,CVE-2019-18408
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP5 (src):    libarchive-3.1.2-26.6.1
SUSE Linux Enterprise Software Development Kit 12-SP4 (src):    libarchive-3.1.2-26.6.1
SUSE Linux Enterprise Server 12-SP5 (src):    libarchive-3.1.2-26.6.1
SUSE Linux Enterprise Server 12-SP4 (src):    libarchive-3.1.2-26.6.1
SUSE Linux Enterprise Desktop 12-SP4 (src):    libarchive-3.1.2-26.6.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 14 Alexandros Toptsoglou 2020-07-10 13:33:55 UTC
Done