|
ALZip Multiple Archive Handling Buffer Overflow |
|
|
|
|
Saturday, 08 October 2005 |
Summary
"ALZip is the easiest to use, most powerful, and by far the cutest compression utility available."
A buffer overflow vulnerability in ALZip allows attackers to cause the program to execute arbitrary code.
Credit:
The information has been provided by Secunia Research.
The original article can be found at: http://secunia.com/advisories/16847/
Details
Vulnerable Systems:
* ALZip version 6.12 (Korean)
* ALZip version 6.1 (International)
* ALZip version 5.52 (English)
Immune Systems:
* ALZip version 6.13 (International)
The vulnerability is caused due to multiple boundary errors when reading the filename of a compressed file from ALZ, ARJ, ZIP, UUE or XXE archives. This can be exploited to cause a stack-based buffer overflow (ALZ), or a heap-based buffer overflow (ARJ / ZIP / UUE / XXE).
Successful exploitation allows execution of arbitrary code when a malicious ALZ / ARJ archive is opened, or when a ZIP / UUE / XXE archive is extracted.
Disclosure Timeline:
19/09/2005 - Initial vendor notification
20/09/2005 - Initial vendor reply
28/09/2005 - Notified by vendor that fixed version has been released
05/10/2005 - Public disclosure
|