Vulnerabilities > CVE-2007-2758 - Buffer Overflow vulnerability in Winimage 8.0.8000
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains long directory names in a deeply nested directory structure, which triggers (1) a stack-based buffer overflow during extraction, or (2) a heap-based buffer overflow during traversal.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://osvdb.org/36081
- http://osvdb.org/36082
- http://secunia.com/advisories/25277
- http://vuln.sg/winimage808000-en.html
- http://www.securityfocus.com/bid/24026
- http://www.vupen.com/english/advisories/2007/1854
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34359
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34360