Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-3901
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-3901

Description:
Multiple stack-based buffer overflows in Tumbleweed Email Firewall (EMF) allow remote attackers to execute arbitrary code via an email attachment with an LHA archive that contains a (1) file or (2) directory with a long LHA extended header, (3) an LHA archive in which the "temporary pathname" field for decompressed output is greater than 2 bytes, or (4) an LHA archive with a long filename.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA21194

OSVDB
  27495

MISC
  http://www.hustlelabs.com/advisories/04072006_tweed.pdf

FULLDISC
  http://marc.theaimsgroup.com/?l=full-disclosure&m=115378437918939&w=2

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/441497/100/0/threaded

BID
  19146


Return to the previous page.