CVE-2024-20697: Windows Libarchive Remote Code Execution Vulnerability
ID: a7d8f70c-16b7-57fc-8fd6-abb0c591f42d
STIX ID: report--a7d8f70c-16b7-57fc-8fd6-abb0c591f42d
Feed Name: Zero Day Initiative (ZDI) Blog
Threat Score
*Executive Summary:* The report documents an integer overflow vulnerability in Libarchive's handling of RARVM filters (Intel E8 preprocessing) that can lead to heap out-of-bounds access and remote arbitrary code execution if a user extracts a specially crafted RAR archive; it details the vulnerable functions, triggering conditions, and provides detection guidance for inspecting RAR traffic.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
