Back

MEDIUM

security flaw

Published Sep 19, 2006

Description

unlzh.c in the LHZ component in gzip 1.3.5 allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted GZIP archive.

Affected products

Remediation

Red Hat statement

Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=220595 The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw. Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Metrics

Weaknesses (0)

No CWE recorded.

References (61)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Sep 19, 2006
Updated Aug 7, 2024
Reserved Aug 24, 2006
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Sep 19, 2006