CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / july, 2005 / Buffer overflow in Zlib 

Buffer overflow in Zlib

Buffer overflow in Zlib

Madrid, July 7 2005 - SecurityTracker has announced the existence of a buffer overflow vulnerability in Zlib, a library in Linux systems used in numerous programs for file compression and extraction.

The overflow in Zlib is in the processing of compressed data streams, in the ˝inftrees.c˝ file. This could allow a remote user to cause denial of service conditions and even execute arbitrary code on affected systems.

To exploit this problem, an attacker would have to create a specially-crafted compressed data stream which, when processed by an application using Zlib, will trigger an overflow in the inflate_table() function and cause the desired effects.

Oxygen3 24h-365d,
by Panda Software
http://www.pandasoftware.com

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel