Computer Security
[EN] securityvulns.ru no-pyccku


unrarlib library buffer overflow
Published:14.03.2007
Source:
SecurityVulns ID:7405
Type:library
Threat Level:
5/10
Description:Buffer overflow in urarlib_get() function on oversized filename.
Affected:UNRARLIB : Unrarlib 0.4
CVE:CVE-2007-1457 (Buffer overflow in the urarlib_get function in Christian Scheurer UniquE RAR File Library (unrarlib, aka URARFileLib) 0.4 allows context-dependent attackers to execute arbitrary code via a long (1) filename, (2) rarfile, or (3) libpassword argument.)
Original documentdocumentstarcadi, [Full-disclosure] Unrarlib 0.4.0 (urarlib_get) Local buffer overflow (14.03.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod