CVE-2007-2758

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/05/2007
Last modified:
29/07/2017

Description

Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains long directory names in a deeply nested directory structure, which triggers (1) a stack-based buffer overflow during extraction, or (2) a heap-based buffer overflow during traversal.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:winimage:winimage:8.0.8000:*:*:*:*:*:*:*