Filtered by vendor Lhaz
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2007-4428 | 1 Lhaz | 1 Lhaz | 2025-04-09 | 6.8 MEDIUM | N/A |
Lhaz 1.33 allows remote attackers to execute arbitrary code via unknown vectors, as actively exploited in August 2007 by the Exploit-LHAZ.a gzip file, a different issue than CVE-2006-4116. | |||||
CVE-2006-4116 | 1 Lhaz | 1 Lhaz | 2025-04-03 | 5.1 MEDIUM | N/A |
Multiple stack-based buffer overflows in Lhaz before 1.32 allow user-assisted attackers to execute arbitrary code via a long filename in (1) an LHZ archive, when saving the filename during extraction; and (2) an LHZ archive with an invalid CRC checksum, when constructing an error message. |