chmlib before 0.39 allows user-assisted remote attackers to execute arbitrary code via a crafted page block length in a CHM file, which triggers memory corruption.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Chmlib | Chmlib | * | 0.38 (including) |
Chmlib | Ubuntu | dapper | * |
Chmlib | Ubuntu | devel | * |
Chmlib | Ubuntu | edgy | * |
Chmlib | Ubuntu | feisty | * |
Chmlib | Ubuntu | gutsy | * |
Chmlib | Ubuntu | hardy | * |
Chmlib | Ubuntu | intrepid | * |
Chmlib | Ubuntu | jaunty | * |
Chmlib | Ubuntu | karmic | * |
Chmlib | Ubuntu | upstream | * |