The decompress function in compress42.c in (1) ncompress 4.2.4 and (2) liblzw allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code, via crafted data that leads to a buffer underflow.
References
Configurations
History
No history.
Information
Published : 2006-08-14 20:04
Updated : 2024-02-04 16:52
NVD link : CVE-2006-1168
Mitre link : CVE-2006-1168
CVE.ORG link : CVE-2006-1168
JSON object : View
Products Affected
ncompress
- ncompress
CWE