In the code that verifies the file size in the ark library, it is possible to manipulate the offset read from the target file due to the wrong use of the data type. An attacker could use this vulnerability to cause a stack buffer overflow and as a result, perform an attack such as remote code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: krcert
Published: 2022-06-01T15:04:52
Updated: 2024-08-03T20:26:25.566Z
Reserved: 2021-02-03T00:00:00
Link: CVE-2021-26635
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-02T14:15:28.307
Modified: 2024-11-21T05:56:38.160
Link: CVE-2021-26635
Redhat
No data.