4.3
CVSSv2

CVE-2015-2063

Published: 09/03/2015 Updated: 09/04/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Integer overflow in unace 1.2b allows remote malicious users to cause a denial of service (crash) via a small file header in an ace archive, which triggers a buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

winace unace 1.2b

Vendor Advisories

Debian Bug report logs - #775003 unace: CVE-2015-2063: buffer overflow Package: unace; Maintainer for unace is Guillem Jover <guillem@debianorg>; Source for unace is src:unace (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Fri, 9 Jan 2015 22:03:01 UTC Severity: normal Found in versions un ...