TZipBuilder ZIP File Buffer Overflow Vulnerability

TZipBuilder is susceptible to a buffer-overflow vulnerability. The application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.

This issue allows attackers to execute arbitrary machine code in the context of users running the affected application.

Version 1.79.03.01 of TZipBuilder is vulnerable to this issue; prior versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus