Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gentoo Local Security Checks >> [GLSA-200410-08] ncompress: Buffer overflow


Vulnerability Assessment Details

[GLSA-200410-08] ncompress: Buffer overflow

Vulnerability Assessment Summary
ncompress: Buffer overflow

Detailed Explanation for this Vulnerability Assessment
The remote host is affected by the vulnerability described in GLSA-200410-08
(ncompress: Buffer overflow)


compress and uncompress do not properly check bounds on command line
options, including the filename. Large parameters would trigger a buffer
overflow.

Impact

By supplying a carefully crafted filename or other option, a possible hacker
could execute arbitrary code on the system. A local attacker could only
execute code with his own rights, but since compress and uncompress are
called by various daemon programs, this might also permit a remote attacker
to execute code with the rights of the daemon making use of ncompress.

Workaround

There is no known workaround at this time.

References:
http://www.kb.cert.org/vuls/id/176363


Solution:
All ncompress users should upgrade to the latest version:
# emerge sync
# emerge -pv ">=app-arch/ncompress-4.2.4-r1"
# emerge ">=app-arch/ncompress-4.2.4-r1"


Network Security Threat Level: Medium


Networks Security ID:

Vulnerability Assessment Copyright: (C) 2005 Michel Arboi

Cables, Connectors


DELL M630 BLADE SERVER x2 XEON E5-2660V3 @ 2.6GH H730 PERC HDD CADDIES 16GB FC picture

DELL M630 BLADE SERVER x2 XEON E5-2660V3 @ 2.6GH H730 PERC HDD CADDIES 16GB FC

$50.00



Dell PowerEdge M640 Dual Bay 2.5

Dell PowerEdge M640 Dual Bay 2.5" SFF Blade Server Barebone No Processors No RAM

$250.00



Cisco UCS 5108 Blade Server Chassis Enclosure 8x B200 M4 16x E5-2640v3 128gb picture

Cisco UCS 5108 Blade Server Chassis Enclosure 8x B200 M4 16x E5-2640v3 128gb

$599.99



Dell PowerEdge M620 Blade Server picture

Dell PowerEdge M620 Blade Server

$39.99



2 x HP ProLiant BL460c (447707-B21) Blade Servers No RAM No HDD picture

2 x HP ProLiant BL460c (447707-B21) Blade Servers No RAM No HDD

$30.00



Dell PowerEdge M620 0F9HJC Blade Server 2*E5-2670 2.60GHz 192GB RAM 2*300GB SAS picture

Dell PowerEdge M620 0F9HJC Blade Server 2*E5-2670 2.60GHz 192GB RAM 2*300GB SAS

$103.99



HP Proliant BL460c G10 Gen10 Blade Server No CPU/No Mem/No Drives/P204i-B picture

HP Proliant BL460c G10 Gen10 Blade Server No CPU/No Mem/No Drives/P204i-B

$329.99



Dell PowerEdge 1955 Blade Server 2x Intel Xeon 2.33GHz 4GB / 72gb hdd x 2 omy759 picture

Dell PowerEdge 1955 Blade Server 2x Intel Xeon 2.33GHz 4GB / 72gb hdd x 2 omy759

$39.99



UCSB-B200-M4 UCS Blade Server, 2x E5-2667 V3, 256GB RAM DDR4, 2x 300GB Drives picture

UCSB-B200-M4 UCS Blade Server, 2x E5-2667 V3, 256GB RAM DDR4, 2x 300GB Drives

$299.99



Dell PowerEdge M620 Blade Server 2x E5-2670 2.6Ghz 16-Cores  256gb  2x 146gb 15k picture

Dell PowerEdge M620 Blade Server 2x E5-2670 2.6Ghz 16-Cores 256gb 2x 146gb 15k

$244.99



Discussions

No Discussions have been posted on this vulnerability.