Security Advisory

CVE-2006-1168

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-08-14 20:00:00
Last updated 2024-08-07 17:03:28
Assigner sgi
State PUBLISHED

Description

The decompress function in compress42.c in (1) ncompress 4.2.4 and (2) liblzw allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code, via crafted data that leads to a buffer underflow.