Ads

ALZip Multiple Archive Handling Buffer Overflow PDF Print E-mail
Saturday, 08 October 2005
Summary
"ALZip is the easiest to use, most powerful, and by far the cutest compression utility available."

A buffer overflow vulnerability in ALZip allows attackers to cause the program to execute arbitrary code.

Credit:
The information has been provided by Secunia Research.
The original article can be found at: http://secunia.com/advisories/16847/

Details
Vulnerable Systems:
* ALZip version 6.12 (Korean)
* ALZip version 6.1 (International)
* ALZip version 5.52 (English)

Immune Systems:
* ALZip version 6.13 (International)

The vulnerability is caused due to multiple boundary errors when reading the filename of a compressed file from ALZ, ARJ, ZIP, UUE or XXE archives. This can be exploited to cause a stack-based buffer overflow (ALZ), or a heap-based buffer overflow (ARJ / ZIP / UUE / XXE).

Successful exploitation allows execution of arbitrary code when a malicious ALZ / ARJ archive is opened, or when a ZIP / UUE / XXE archive is extracted.

Disclosure Timeline:
19/09/2005 - Initial vendor notification
20/09/2005 - Initial vendor reply
28/09/2005 - Notified by vendor that fixed version has been released
05/10/2005 - Public disclosure
 
< Prev   Next >