CVE-2020-9308: Improper Input Validation
(updated )
archive_read_support_format_rar5.c
in libarchive attempts to unpack a RAR5 file with an invalid or corrupted header (such as a header size of zero), leading to a SIGSEGV
or possibly unspecified other impact.
References
Detect and mitigate CVE-2020-9308 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →