CVE-2006-0855: Buffer Overflow
Stack-based buffer overflow in the fullpath function in misc.c for zoo 2.10 and earlier, as used in products such as Barracuda Spam Firewall, allows user-assisted attackers to execute arbitrary code via a crafted ZOO file that causes the combine function to return a longer string than expected.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0855?
CVE-2006-0855 is classified as a high-severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2006-0855?
To fix CVE-2006-0855, users should upgrade to Zoo version 2.11 or later, which addresses this buffer overflow issue.
What systems are affected by CVE-2006-0855?
CVE-2006-0855 affects Zoo versions 2.10 and earlier, including products such as Barracuda Spam Firewall.
What type of vulnerability is CVE-2006-0855?
CVE-2006-0855 is a stack-based buffer overflow vulnerability that can be exploited by user-assisted attackers.
What can attackers achieve by exploiting CVE-2006-0855?
Exploiting CVE-2006-0855 allows attackers to execute arbitrary code on the affected system.