Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code via a long filename in a compressed (1) ALZ, (2) ARJ, (3) ZIP, (4) UUE, or (5) XXE archive.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Alzip | Estsoft | 5.52_english (including) | 5.52_english (including) |
Alzip | Estsoft | 6.1_international (including) | 6.1_international (including) |
Alzip | Estsoft | 6.12_korean (including) | 6.12_korean (including) |