Stack-based buffer overflow in the LZC decompression implementation (CsObjectInt::CsDecomprLZC function in vpa106cslzc.cpp) in SAP MaxDB 7.5 and 7.6, Netweaver Application Server ABAP, Netweaver Application Server Java, Netweaver RFC SDK, GUI, RFC SDK, SAPCAR archive tool, and other products allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via unspecified vectors, aka SAP Security Note 2124806, 2121661, 2127995, and 2125316.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-06-02T14:00:00

Updated: 2024-08-06T05:10:15.939Z

Reserved: 2015-03-10T00:00:00

Link: CVE-2015-2282

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-06-02T14:59:08.880

Modified: 2018-10-09T19:56:14.093

Link: CVE-2015-2282

cve-icon Redhat

No data.