Security Advisory

CVE-2019-19221

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-21 00:00:00
Last updated 2024-08-05 02:09:39
Assigner mitre
State PUBLISHED

Description

In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. For example, bsdtar crashes via a crafted archive.