MEDIUM
Multiple stack-based buffer overflows in Lhaz before 1.32 allow user-assisted attackers to execute arbitrary code via a long filename in (1) an LHZ archive, when saving the filename during extraction; and (2) an LHZ archive with an invalid CRC checksum, when constructing an error message
Published Aug 14, 2006
5.1
MEDIUMCVSS 2.0
EPSS 3.59%
Description
Affected products
Remediation
References (10)
Change history (0)
No recorded changes yet.