CVE-2014-9913
published 2017-01-18CVE-2014-9913: Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to…
PriorityP416medium4CVSS 3.0
AVLACLPRNUINSUCNINAL
EPSS
1.45%
70.5th percentile
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | unzip | < unzip 6.0-21 (bookworm) | unzip 6.0-21 (bookworm) |
| msrc | azl3_unzip_6.0-20_on_azure_linux_3.0 | — | — |
| msrc | azl3_unzip_6.0-22_on_azure_linux_3.0 | — | — |
| msrc | cbl2_unzip_6.0-19_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| msrc | cm1_unzip_6.0-15_on_cbl_mariner_1.0 | — | — |
| msrc | unzip-6.0-15.cm1.aarch64.rpm_on_cbl_mariner_1.0_arm | — | — |
| msrc | unzip-6.0-15.cm1.x86_64.rpm_on_cbl_mariner_1.0_x64 | — | — |
| msrc | unzip-6.0-19.cm2.aarch64.rpm_on_cbl_mariner_2.0_arm | — | — |
| msrc | unzip-6.0-19.cm2.x86_64.rpm_on_cbl_mariner_2.0_x64 | — | — |
| msrc | unzip-6.0-20.azl3.aarch64.rpm_on_azure_linux_3.0_arm | — | — |
| msrc | unzip-6.0-20.azl3.x86_64.rpm_on_azure_linux_3.0_x64 | — | — |
| msrc | unzip-debuginfo-6.0-15.cm1.aarch64.rpm_on_cbl_mariner_1.0_arm | — | — |
| msrc | unzip-debuginfo-6.0-15.cm1.x86_64.rpm_on_cbl_mariner_1.0_x64 | — | — |
| msrc | unzip-debuginfo-6.0-19.cm2.aarch64.rpm_on_cbl_mariner_2.0_arm | — | — |
| msrc | unzip-debuginfo-6.0-19.cm2.x86_64.rpm_on_cbl_mariner_2.0_x64 | — | — |
| unzip_project | unzip | — | — |
| unzip_project | unzip | >= 0 < 6.0-21 | 6.0-21 |
| unzip_project | unzip | >= 0 < 6.0-21 | 6.0-21 |
| unzip_project | unzip | >= 0 < 6.0-21 | 6.0-21 |
| unzip_project | unzip | >= 0 < 6.0-21 | 6.0-21 |
| unzip_project | unzip | >= 0 < 6.0-20ubuntu1.1 | 6.0-20ubuntu1.1 |
CVSS provenance
nvdv3.04.0MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
osv4.0MEDIUM
vendor_debian4.0MEDIUM
vendor_msrc4.0MEDIUM
vendor_redhat4.0MEDIUM
vendor_ubuntu4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7vv9-r95r-f25f: Buffer overflow in the list_files function in list
ghsa_unreviewed·2022-05-13
CVE-2014-9913 [MEDIUM] CWE-119 GHSA-7vv9-r95r-f25f: Buffer overflow in the list_files function in list
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
OSV
unzip vulnerabilities
osv·2020-12-16·CVSS 4.0
CVE-2018-1000035 [MEDIUM] unzip vulnerabilities
unzip vulnerabilities
Rene Freingruber discovered that unzip incorrectly handled certain
specially crafted password protected ZIP archives. If a user or automated
system using unzip were tricked into opening a specially crafted zip file,
an attacker could exploit this to cause a crash, resulting in a denial of
service. (CVE-2018-1000035)
Antonio Carista discovered that unzip incorrectly handled certain
specially crafted ZIP archives. If a user or automated system using unzip
were tricked into opening a specially crafted zip file, an attacker could
exploit this to cause a crash, resulting in a denial of service. This
issue only affected Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
(CVE-2018-18384)
It was discovered that unzip incorrectly handled certain specially crafted
ZIP archives. If a use
OSV
CVE-2014-9913: Buffer overflow in the list_files function in list
osv·2017-01-18·CVSS 4.0
CVE-2014-9913 [MEDIUM] CVE-2014-9913: Buffer overflow in the list_files function in list
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Ubuntu
unzip vulnerabilities
vendor_ubuntu·2020-12-16·CVSS 4.0
CVE-2018-1000035 [MEDIUM] unzip vulnerabilities
Title: unzip vulnerabilities
Summary: Several security issues were fixed in unzip.
Rene Freingruber discovered that unzip incorrectly handled certain
specially crafted password protected ZIP archives. If a user or automated
system using unzip were tricked into opening a specially crafted zip file,
an attacker could exploit this to cause a crash, resulting in a denial of
service. (CVE-2018-1000035)
Antonio Carista discovered that unzip incorrectly handled certain
specially crafted ZIP archives. If a user or automated system using unzip
were tricked into opening a specially crafted zip file, an attacker could
exploit this to cause a crash, resulting in a denial of service. This
issue only affected Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
(CVE-2018-18384)
It was discovered that unzip incorr
Microsoft
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
vendor_msrc·2017-01-10·CVSS 4.0
CVE-2014-9913 [MEDIUM] CWE-119 Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect th
Red Hat
unzip: methbuf[] buffer overflow in unzip's list_files()
vendor_redhat·2014-11-03·CVSS 4.0
CVE-2014-9913 [MEDIUM] CWE-121 unzip: methbuf[] buffer overflow in unzip's list_files()
unzip: methbuf[] buffer overflow in unzip's list_files()
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Package: unzip (Red Hat Enterprise Linux 5) - Will not fix
Package: unzip (Red Hat Enterprise Linux 6) - Will not fix
Package: unzip (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2014-9913: unzip - Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allow...
vendor_debian·2014·CVSS 4.0
CVE-2014-9913 [MEDIUM] CVE-2014-9913: unzip - Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allow...
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Scope: local
bookworm: resolved (fixed in 6.0-21)
bullseye: resolved (fixed in 6.0-21)
forky: resolved (fixed in 6.0-21)
sid: resolved (fixed in 6.0-21)
trixie: resolved (fixed in 6.0-21)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-9913 unzip: methbuf[] buffer overflow in unzip's list_files()
bugzilla·2016-12-06·CVSS 4.0
CVE-2014-9913 [MEDIUM] CVE-2014-9913 unzip: methbuf[] buffer overflow in unzip's list_files()
CVE-2014-9913 unzip: methbuf[] buffer overflow in unzip's list_files()
A buffer overflow vulnerability was found in "unzip -l" via list_files() in list.c. This issue is caught by fortify source.
Original report from 2014:
http://seclists.org/oss-sec/2014/q4/497
CVE assignment:
http://seclists.org/oss-sec/2016/q4/601
Discussion:
This issue was previously reported here:
https://bugzilla.redhat.com/show_bug.cgi?id=1191136#c1
The issue was already corrected in Fedora unzip packages. This issue is not planned to be corrected in the unzip packages in Red Hat Enterprise Linux 5, 6, and 7, as the problem is caught by FORTIFY_SOURCE, limiting impact to a crash of the unzip command.
---
Related upstream forums discussion:
http://www.info-zip.org/phpBB3/viewtopic.php?f=7&t=529
Bugzilla
CVE-2016-9844 unzip: methbuf[] buffer overflow in zipinfo's zi_short()
bugzilla·2016-12-06·CVSS 4.0
CVE-2016-9844 [MEDIUM] CVE-2016-9844 unzip: methbuf[] buffer overflow in zipinfo's zi_short()
CVE-2016-9844 unzip: methbuf[] buffer overflow in zipinfo's zi_short()
A buffer overflow vulnerability was found in zipinfo (part of the unzip package) when the compression method in the central directory file header is greater then 999.
The original Ubuntu bug report:
https://bugs.launchpad.net/ubuntu/+source/unzip/+bug/1643750
Proposed fix:
http://seclists.org/oss-sec/2016/q4/600
References:
http://seclists.org/oss-sec/2016/q4/594
Discussion:
This bug is pretty much identical to the similar problem fixed in unzip's list_files() - see CVE-2014-9913 / bug 1401865.
This issue is caught by FORTIFY_SOURCE, limiting its impact to a crash of the zipinfo command. Therefore, the issue is not planned to be corrected in the unzip packages in Red Hat Enterprise Linux 5, 6, and 7.
(In repl
http://www.openwall.com/lists/oss-security/2014/11/03/5http://www.openwall.com/lists/oss-security/2016/12/05/13http://www.openwall.com/lists/oss-security/2016/12/05/19http://www.openwall.com/lists/oss-security/2016/12/05/20http://www.securityfocus.com/bid/95081https://bugs.launchpad.net/ubuntu/+source/unzip/+bug/1643750http://www.openwall.com/lists/oss-security/2014/11/03/5http://www.openwall.com/lists/oss-security/2016/12/05/13http://www.openwall.com/lists/oss-security/2016/12/05/19http://www.openwall.com/lists/oss-security/2016/12/05/20http://www.securityfocus.com/bid/95081https://bugs.launchpad.net/ubuntu/+source/unzip/+bug/1643750
2017-01-18
Published