Integer overflow in the ISO9660 writer in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via vectors related to verifying filename lengths when writing an ISO9660 archive, which trigger a buffer overflow.
{
"unresolved_ranges": [
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "7"
}
],
"cpes": [
"cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
],
"vendor_product": "oracle:linux"
}
]
}