CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / march, 2006 / GNU tar archive extraction buffer overflow vulnerability 

GNU tar archive extraction buffer overflow vulnerability

GNU tar archive extraction buffer overflow vulnerability

Date Discovered: 2006. március 1.
Date Published: 2006. március 1.
Last Updated: 2006. március 1.

Vulnerability Description

Vulnerability ID: 33881 Discovered By: Jim Meyering
Exploitable Locally: No Exploitable Remotely: Yes
Impact: Remote attackers can execute arbitrary code or cause a denial of service condition.
Root Cause: Software Vulnerability

GNU tar contains a buffer overflow vulnerability that can allow remote attackers to execute arbitrary code or cause a denial of service condition. The vulnerability is due to improper bounds checking when extracting malformed archives. Remote attackers can exploit the vulnerability to execute arbitrary code or cause the application to crash.

 

More information on CA Virus Information Center
http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=33881

Computer Associates – the Trusted Source of Security Knowledge

 


 

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel