First published: Tue Sep 19 2006(Updated: )
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/gzip | <0:1.3.3-13.rhel3 | 0:1.3.3-13.rhel3 |
redhat/gzip | <0:1.3.3-16.rhel4 | 0:1.3.3-16.rhel4 |
gzip | =1.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4334 has been classified as a denial of service vulnerability, allowing attackers to crash the gzip utility.
To address CVE-2006-4334, update gzip to version 1.3.3-13.rhel3 or 1.3.3-16.rhel4 or a later version.
CVE-2006-4334 affects gzip version 1.3.5 and earlier versions in specific Red Hat distributions.
Yes, CVE-2006-4334 can potentially be exploited by remote attackers through crafted GZIP archives.
The impact of CVE-2006-4334 is a denial of service, which could disrupt system operations when gzip is executed.