Vissza a www.andrews.hu-ra

    [guru] [remove-vuln@secunia.com: Secunia Research: BitZipper unacev2.dll Buffer Overflow Vulnerability]


    DATE: Tue, 08 Aug 2006 01:16:49 +0200
    Buffer overflow hibát találtak a BitZipper archíváló program unacev2.dll
    függvénygyüjteményben. A hiba rosszindulatú ACE archívval használható ki,
    amely túlságosan hosszú nevü file-okat tartalmaz.
    
    Javítás egyelőre nincs. Nem megbízható archívok meg nem nyitásával lehet
    védekezni.
    
    
    
    ----- Forwarded message from Secunia Research <remove-vuln@secunia.com> -----
    
    Date: Mon, 17 Jul 2006 09:08:32 +0200
    From: Secunia Research <remove-vuln@secunia.com>
    To: vuln@secunia.com
    Subject: Secunia Research: BitZipper unacev2.dll Buffer Overflow
    	Vulnerability
    Cc: bugtraq@securityfocus.com
    X-Mailer: Evolution 2.0.2 (2.0.2-27) 
    
    ====================================================================== 
    
                        Secunia Research 17/07/2006
    
           - BitZipper unacev2.dll Buffer Overflow Vulnerability -
    
    ====================================================================== 
    Table of Contents
    
    Affected Software....................................................1
    Severity.............................................................2
    Description of Vulnerability.........................................3
    Solution.............................................................4
    Time Table...........................................................5
    Credits..............................................................6
    References...........................................................7
    About Secunia........................................................8
    Verification.........................................................9
    
    ====================================================================== 
    1) Affected Software 
    
    * BitZipper version 4.1 SR-1.
    
    Other versions may also be affected.
    
    ====================================================================== 
    2) Severity 
    
    Rating: Moderately Critical
    Impact: System Access
    Where:  Remote
    
    ====================================================================== 
    3) Description of Vulnerability
    
    Secunia Research has discovered a vulnerability in BitZipper, which
    can be exploited by malicious people to compromise a user's system.
    
    The vulnerability is caused due to a boundary error in UNACEV2.DLL 
    when extracting an ACE archive containing a file with an overly long
    filename. This can be exploited to cause a stack-based buffer overflow
    when a user extracts a specially crafted ACE archive.
    
    The vulnerability is related to:
    SA16479
    
    ====================================================================== 
    4) Solution 
    
    Do not extract untrusted archives.
    
    ====================================================================== 
    5) Time Table 
    
    02/05/2006 - Initial vendor notification.
    16/05/2006 - Second vendor notification.
    16/05/2006 - Initial vendor reply.
    17/07/2006 - Public disclosure
    
    ====================================================================== 
    6) Credits 
    
    Discovered by Secunia Research.
    
    ====================================================================== 
    7) References
    
    SA16479:
    http://secunia.com/advisories/16479/
    
    The Common Vulnerabilities and Exposures (CVE) project has assigned
    CVE-2005-2856 for the vulnerability.
    
    ====================================================================== 
    8) About Secunia 
    
    Secunia collects, validates, assesses, and writes advisories regarding 
    all the latest software vulnerabilities disclosed to the public. These 
    advisories are gathered in a publicly available database at the 
    Secunia website: 
    
    http://secunia.com/
    
    Secunia offers services to our customers enabling them to receive all 
    relevant vulnerability information to their specific system 
    configuration. 
    
    Secunia offers a FREE mailing list called Secunia Security Advisories: 
    
    http://secunia.com/secunia_security_advisories/
    
    ====================================================================== 
    9) Verification 
    
    Please verify this advisory by visiting the Secunia website:
    http://secunia.com/secunia_research/2006-46/advisory/
    
    Complete list of vulnerability reports published by Secunia Research:
    http://secunia.com/secunia_research/
    
    ======================================================================
    
    
    
    
    
    
    ----- End forwarded message -----
    
    
    

    Vissza a www.andrews.hu-ra