Integer underflow in the decode_level3_header function in lib/lha_file_header.c in Lhasa before 0.3.1 allows remote attackers to execute arbitrary code via a crafted archive.
- http://www.talosintelligence.com/reports/TALOS-2016-0095/
No PoCs found on GitHub currently.