Array index error in the make_table function in unlzh.c in the LZH decompression component in gzip 1.3.5, when running on certain platforms, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GZIP archive that triggers an out-of-bounds write, aka a "stack modification vulnerability."
CVSS Details
- CVSS 3.1 Base Score: 6.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Gnuzip | — | Apply OS X security update 2006-007 | Dec 16, 2011 | Sep 19, 2006 |
| Debian | — | Upgrade gzip | Jul 30, 2024 | Sep 19, 2006 |
| Freebsd | — | Upgrade gzipUpgrade FreeBSD | Dec 10, 2025 | Dec 19, 2006 |
| Gentoo Linux | — | Upgrade app-arch/lha.Upgrade app-arch/gzip. | Oct 30, 2017 | Sep 19, 2006 |
| Hpux | — | Update SW-DIST.GZIP to the latest versionUpdate SW-DIST.SD-AGENT to the latest versionApply patch PHCO_35587 from HPUpdate SW-DIST.SD-CMDS to the latest version | Aug 11, 2017 | Sep 19, 2006 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Dec 2, 2006 |
| Suse | — | Upgrade gzip | Feb 17, 2015 | Sep 19, 2006 |
| Ubuntu | — | Upgrade gzip | Nov 8, 2024 | Sep 19, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub