First published: Fri Feb 10 2006(Updated: )
Borland C++Builder 6 (BCB6) with Update Pack 4 Enterprise edition (ent_upd4) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities into applications that could be exploited by context-dependent attackers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Borland C++ Builder | =6-enterprise_update_4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0634 is classified as a moderate severity vulnerability due to potential integer overflow risks.
To fix CVE-2006-0634, update to a version of Borland C++Builder later than Update Pack 4 for Enterprise edition.
CVE-2006-0634 affects applications developed using Borland C++Builder 6 with Update Pack 4 Enterprise edition.
CVE-2006-0634 can be exploited by context-dependent attackers with access to vulnerable applications.
CVE-2006-0634 introduces potential integer overflow vulnerabilities, which could lead to unexpected behavior in the applications.