CVE-2006-4336

Publication date 19 September 2006

Last updated 24 July 2024


Ubuntu priority

Buffer underflow in the build_tree function in unpack.c in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted leaf count table that causes a write to a negative index.

Status

Package Ubuntu Release Status
gzip 7.04 feisty
Fixed 1.3.5-14ubuntu1
6.10 edgy
Fixed 1.3.5-14ubuntu1
6.06 LTS dapper
Fixed 1.3.5-12ubuntu0.1

References

Related Ubuntu Security Notices (USN)

    • USN-349-1
    • gzip vulnerabilities
    • 20 September 2006

Other references