Lhaca.LZH.Archive.Extended.Header.Size.Buffer.Overflow

description-logoDescription

This indicates a possible exploit of a buffer overflow vulnerability in Lhaca File Archiver.
This flaw is caused by a buffer overflow error when processing an LZH file with an overly large "Extended Header Size" value (more than 255 bytes).

affected-products-logoAffected Products

Lhaca version 1.21 and prior.

Impact logoImpact

The execution of arbitrary code on the system.

recomended-action-logoRecommended Actions

Upgrade to Lhaca version 1.23 :

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)