CVE Vulnerabilities

CVE-2006-4336

Published: Sep 19, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Buffer underflow in the build_tree function in unpack.c in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted leaf count table that causes a write to a negative index.

Affected Software

Name Vendor Start Version End Version
Gzip Gzip 1.3.5 (including) 1.3.5 (including)
Red Hat Enterprise Linux 3 RedHat gzip-0:1.3.3-13.rhel3 *
Red Hat Enterprise Linux 4 RedHat gzip-0:1.3.3-16.rhel4 *
Gzip Ubuntu dapper *
Gzip Ubuntu devel *
Gzip Ubuntu edgy *
Gzip Ubuntu feisty *

References