First published: Thu May 24 2007(Updated: )
Buffer overflow in a certain ActiveX control in DartZipLite.dll 1.8.5.3 in Dart ZipLite Compression for ActiveX allows user-assisted remote attackers to execute arbitrary code via a long first argument to the QuickZip function, a related issue to CVE-2007-2856.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dart Dart Ziplite Compression | =1.8.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2855 has a high severity rating due to its potential to allow remote code execution.
To fix CVE-2007-2855, upgrade Dart ZipLite Compression to version 1.8.5.4 or later.
CVE-2007-2855 specifically affects Dart ZipLite Compression version 1.8.5.3.
CVE-2007-2855 is classified as a buffer overflow vulnerability.
CVE-2007-2855 can be exploited by remote attackers through a maliciously crafted input to the QuickZip function.