Oval Definition:oval:org.mitre.oval:tst:32961
Comment:gzip is earlier than 0:1.3.3-13.rhel3
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14444
State:oval:org.mitre.oval:ste:10041
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10140
V
Buffer underflow in the build_tree function in unpack.c in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted leaf count table that causes a write to a negative index.
2013-04-29
oval:org.mitre.oval:def:10391
V
Array index error in the make_table function in unlzh.c in the LZH decompression component in gzip 1.3.5, when running on certain platforms, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GZIP archive that triggers an out-of-bounds write, aka a "stack modification vulnerability."
2013-04-29
oval:org.mitre.oval:def:10527
V
Unspecified vulnerability in gzip 1.3.5 allows context-dependent attackers to cause a denial of service (crash) via a crafted GZIP (gz) archive, which results in a NULL dereference.
2013-04-29
oval:org.mitre.oval:def:11212
V
Buffer overflow in the make_table function in the LHZ component in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted decoding table in a GZIP archive.
2013-04-29
oval:org.mitre.oval:def:11290
V
unlzh.c in the LHZ component in gzip 1.3.5 allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted GZIP archive.
2013-04-29
BACK