CVE-2005-2856

N/A Unknown
Published: September 08, 2005 Modified: April 16, 2026
View on NVD

Description

Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including (1) ALZip 5.51 through 6.11, (2) Servant Salamander 2.0 and 2.5 Beta 1, (3) WinHKI 1.66 and 1.67, (4) ExtractNow 3.x, (5) Total Commander 6.53, (6) Anti-Trojan 5.5.421, (7) PowerArchiver before 9.61, (8) UltimateZip 2.7,1, 3.0.3, and 3.1b, (9) Where Is It (WhereIsIt) 3.73.501, (10) FilZip 3.04, (11) IZArc 3.5 beta3, (12) Eazel 1.0, (13) Rising Antivirus 18.27.21 and earlier, (14) AutoMate 6.1.0.0, (15) BitZipper 4.1 SR-1, (16) ZipTV, and other products, allows user-assisted attackers to execute arbitrary code via a long filename in an ACE archive.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/16479
Source: cve@mitre.org
Patch Vendor Advisory
http://secunia.com/advisories/19454
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19458
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19581
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19834
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19890
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19938
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19967
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19975
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/19977
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/20009
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-24/advisory
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-25/advisory
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-27/
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-28/advisory
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-29/advisory/
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-30/advisory
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-33/advisory/
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-36/advisory
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/secunia_research/2006-38/advisory
Source: cve@mitre.org
Vendor Advisory
http://www.osvdb.org/25129
Source: cve@mitre.org
http://marc.info/?l=bugtraq&m=112621008228458&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/16479
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://secunia.com/advisories/19454
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19458
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19581
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19596
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19612
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19834
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19890
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19931
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19938
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19939
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19967
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19975
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/19977
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/20009
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/20270
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/secunia_research/2005-41/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/secunia_research/2006-24/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-25/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-27/
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-28/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-29/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-30/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-32/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/secunia_research/2006-33/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-36/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-38/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2006-46/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/secunia_research/2006-50/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
http://securityreason.com/securityalert/49
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1014863
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1015852
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016011
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016012
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016065
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016066
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016088
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016114
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016115
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016177
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016257
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016512
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/25129
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/432357/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/432579/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/433258/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/433352/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/433693/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/434011/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/434234/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/434279/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/436639/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/440303/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/14759
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/19884
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1565
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1577
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1611
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1681
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1694
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1725
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1775
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1797
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1835
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1836
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/2047
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/2184
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/2824
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/3495
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26116
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26142
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26168
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26272
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26302
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26315
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26385
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26447
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26479
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26480
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26736
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26982
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/27763
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/28787
Source: af854a3a-2127-422b-91ae-364da2661108

168 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
21.6%
96th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

winace