CVE-2006-1168

EPSS 9.8%

ncompress - buffer underflow

Published: 8/14/2006Modified: 3/9/2026
Also known as:DSA-1149-1DEBIAN-CVE-2006-1168

Description

The decompress function in compress42.c in (1) ncompress 4.2.4 and (2) liblzw allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code, via crafted data that leads to a buffer underflow.

Affected packages (2)

References (1)