|
|
| |
|
| |
cabextract: denial of service
| Package(s): | cabextract |
CVE #(s): | CVE-2010-2800
|
| Created: | August 13, 2010 |
Updated: | September 28, 2010 |
| Description: |
From the Pardus advisory:
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers
to cause a denial of service (infinite loop) via a malformed MSZIP
archive in a .cab file during a (1) test or (2) extract action, related
to the libmspack library.
|
| Alerts: |
|
( Log in to post comments)
|
|
|