|
|
| |
|
| |
squashfs-tools: two code execution flaws
| Package(s): | squashfs-tools |
CVE #(s): | CVE-2012-4024
CVE-2012-4025
|
| Created: | December 19, 2012 |
Updated: | January 7, 2013 |
| Description: |
From the Red Hat bugzilla entries [1, 2]:
CVE-2012-4024: Stack-based buffer overflow in the get_component function in
unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote
attackers to execute arbitrary code via a crafted list file (aka a
crafted file for the -ef option). NOTE: probably in most cases, the
list file is a trusted file constructed by the program's user;
however, there are some realistic situations in which a list file
would be obtained from an untrusted remote source.
CVE-2012-4025: Integer overflow in the queue_init function in unsquashfs.c in
unsquashfs in Squashfs 4.2 and earlier allows remote attackers to
execute arbitrary code via a crafted block_log field in the superblock
of a .sqsh file, leading to a heap-based buffer overflow. |
| Alerts: |
|
( Log in to post comments)
|
|
|