Vulnerability Description
Buffer overflow in the LZX decompression in CHM Lib (chmlib) 0.35, as used in products such as KchmViewer, has unknown impact and attack vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jed Wing | Chm Lib | 0.35 |
References
- http://mail-index.netbsd.org/pkgsrc-changes/2005/09/12/0010.html
- http://secunia.com/advisories/17325
- http://secunia.com/advisories/17494PatchVendor Advisory
- http://secunia.com/advisories/17775PatchVendor Advisory
- http://www.debian.org/security/2005/dsa-886PatchVendor Advisory
- http://www.securityfocus.com/bid/15338
- http://mail-index.netbsd.org/pkgsrc-changes/2005/09/12/0010.html
- http://secunia.com/advisories/17325
- http://secunia.com/advisories/17494PatchVendor Advisory
- http://secunia.com/advisories/17775PatchVendor Advisory
- http://www.debian.org/security/2005/dsa-886PatchVendor Advisory
- http://www.securityfocus.com/bid/15338
FAQ
What is CVE-2005-2659?
CVE-2005-2659 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in the LZX decompression in CHM Lib (chmlib) 0.35, as used in products such as KchmViewer, has unknown impact and attack vectors.
How severe is CVE-2005-2659?
CVE-2005-2659 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2659?
Check the references section above for vendor advisories and patch information. Affected products include: Jed Wing Chm Lib.