A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Unzip | Unzip_project | 6.0 (including) | 6.0 (including) |
Unzip | Ubuntu | bionic | * |
Unzip | Ubuntu | esm-infra/xenial | * |
Unzip | Ubuntu | focal | * |
Unzip | Ubuntu | impish | * |
Unzip | Ubuntu | jammy | * |
Unzip | Ubuntu | trusty | * |
Unzip | Ubuntu | trusty/esm | * |
Unzip | Ubuntu | upstream | * |
Unzip | Ubuntu | xenial | * |