PublicDate: 2006-09-19 21:07:00 UTC Candidate: CVE-2006-4336 References: https://ubuntu.com/security/notices/USN-349-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4336 Description: Buffer underflow in the build_tree function in unpack.c in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted leaf count table that causes a write to a negative index. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_gzip: released (1.3.5-12ubuntu0.1) edgy_gzip: released (1.3.5-14ubuntu1) feisty_gzip: released (1.3.5-14ubuntu1) devel_gzip: released (1.3.5-14ubuntu1) upstream_gzip: needs-triage