eMule <= 0.46b is vulnerable [Sitemap] - HeapOverflow Computer Security Community & Forums : Heap Overflow.com

PDA

View Full Version : eMule <= 0.46b is vulnerable


class101
27-07-05, 15:06
according to Kotik

http://www.frsirt.com/bulletins/1663

There is a remote buffer overflow in it , this can be huge because most eMule versions onlines are outdated.

touk
28-07-05, 09:25
this can be huge not only because most eMule versions onlines are outdated but also because the vulnerability is in the Zlib (<= 1.22) in the file inftrees.c. And Zlib is used with Linux/windows and in such application as Windows Messenger, DirectX, FrontPage, Internet Explorer, Office...

class101
28-07-05, 09:30
Yep true so but I don't think the vuln is in Zlib because where is the use to rls it under the eMule application, prolly an eMule bug on how it is handling Zlib, but not a Zlib bug.