Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
BID:22942
Info
Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
| Bugtraq ID: | 22942 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-1457 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 13 2007 12:00AM |
| Updated: | May 12 2015 07:33PM |
| Credit: | starcadi is credited with the discovery of this vulnerability. |
| Vulnerable: |
Christian Scheurer unrarlib 0.4 |
| Not Vulnerable: | |
Discussion
Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
The 'unrarlib' library is prone to a buffer-overflow vulnerability because the library fails to perform proper bounds-checking of user-supplied input before copying it to an insufficiently sized memory buffer.
Attackers can exploit this vulnerability to execute attacker-supplied code in the context of an application that relies on the affected library.
The 'unrarlib' library is prone to a buffer-overflow vulnerability because the library fails to perform proper bounds-checking of user-supplied input before copying it to an insufficiently sized memory buffer.
Attackers can exploit this vulnerability to execute attacker-supplied code in the context of an application that relies on the affected library.
Exploit / POC
Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Unrarlib URarLib_Get Function Buffer Overflow Vulnerability
References:
References:
- unrarlib Homepage (Christian Scheurer)