NCompress Decompress Buffer Underflow Vulnerability

The ncompress utility is prone to a buffer-underflow vulnerability. When ncompress decompresses data, it fails to perform appropriate bounds checking, which may allow certain decompress operations to underflow an internal buffer. This may cause unpredictable effects on vulnerable systems.

Version 4.2.4 is reportedly vulnerable to this issue; earlier versions may be affected as well.


 

Privacy Statement
Copyright 2010, SecurityFocus