CVE-2007-2758 Information

Description

Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains long directory names in a deeply nested directory structure which triggers (1) a stack-based buffer overflow during extraction or (2) a heap-based buffer overflow during traversal.

Reference

http://osvdb.org/36081 http://osvdb.org/36082 http://secunia.com/advisories/25277 http://vuln.sg/winimage808000-en.html http://www.securityfocus.com/bid/24026 http://www.vupen.com/english/advisories/2007/1854 https://exchange.xforce.ibmcloud.com/vulnerabilities/34359 https://exchange.xforce.ibmcloud.com/vulnerabilities/34360

Share on: