CVE Vulnerabilities

CVE-2006-3178

Published: Jun 23, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Directory traversal vulnerability in extract_chmLib example program in CHM Lib (chmlib) before 0.38 allows remote attackers to overwrite arbitrary files via a CHM archive containing files with a .. (dot dot) in their filename.

Affected Software

Name Vendor Start Version End Version
Chm_lib Jed_wing * 0.37 (including)
Chmlib Ubuntu dapper *
Chmlib Ubuntu devel *
Chmlib Ubuntu edgy *
Chmlib Ubuntu feisty *
Chmlib Ubuntu gutsy *
Chmlib Ubuntu hardy *
Chmlib Ubuntu intrepid *
Chmlib Ubuntu jaunty *
Chmlib Ubuntu karmic *

References