CVE-2018-18384
published 2018-10-16CVE-2018-18384: Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size…
PriorityP423medium5.5CVSS 3.0
AVLACLPRNUIRSUCNINAH
EPSS
2.59%
83.5th percentile
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | unzip | < unzip 6.0-11 (bookworm) | unzip 6.0-11 (bookworm) |
| msrc | azl3_unzip_6.0-20_on_azure_linux_3.0 | — | — |
| msrc | azl3_unzip_6.0-22_on_azure_linux_3.0 | — | — |
| msrc | cbl2_unzip_6.0-19_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| msrc | cm1_unzip_6.0-15_on_cbl_mariner_1.0 | — | — |
| msrc | unzip-6.0-15.cm1.aarch64.rpm_on_cbl_mariner_1.0_arm | — | — |
| msrc | unzip-6.0-15.cm1.x86_64.rpm_on_cbl_mariner_1.0_x64 | — | — |
| msrc | unzip-6.0-19.cm2.aarch64.rpm_on_cbl_mariner_2.0_arm | — | — |
| msrc | unzip-6.0-19.cm2.x86_64.rpm_on_cbl_mariner_2.0_x64 | — | — |
| msrc | unzip-6.0-20.azl3.aarch64.rpm_on_azure_linux_3.0_arm | — | — |
| msrc | unzip-6.0-20.azl3.x86_64.rpm_on_azure_linux_3.0_x64 | — | — |
| msrc | unzip-debuginfo-6.0-15.cm1.aarch64.rpm_on_cbl_mariner_1.0_arm | — | — |
| msrc | unzip-debuginfo-6.0-15.cm1.x86_64.rpm_on_cbl_mariner_1.0_x64 | — | — |
| msrc | unzip-debuginfo-6.0-19.cm2.aarch64.rpm_on_cbl_mariner_2.0_arm | — | — |
| msrc | unzip-debuginfo-6.0-19.cm2.x86_64.rpm_on_cbl_mariner_2.0_x64 | — | — |
| unzip_project | unzip | — | — |
| unzip_project | unzip | >= 0 < 6.0-11 | 6.0-11 |
| unzip_project | unzip | >= 0 < 6.0-11 | 6.0-11 |
| unzip_project | unzip | >= 0 < 6.0-11 | 6.0-11 |
| unzip_project | unzip | >= 0 < 6.0-11 | 6.0-11 |
| unzip_project | unzip | >= 0 < 6.0-20ubuntu1.1 | 6.0-20ubuntu1.1 |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jjvf-xm75-cph5: Info-ZIP UnZip 6
ghsa_unreviewed·2022-05-13
CVE-2018-18384 [MEDIUM] CWE-119 GHSA-jjvf-xm75-cph5: Info-ZIP UnZip 6
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
OSV
unzip vulnerabilities
osv·2020-12-16·CVSS 4.0
CVE-2018-1000035 [MEDIUM] unzip vulnerabilities
unzip vulnerabilities
Rene Freingruber discovered that unzip incorrectly handled certain
specially crafted password protected ZIP archives. If a user or automated
system using unzip were tricked into opening a specially crafted zip file,
an attacker could exploit this to cause a crash, resulting in a denial of
service. (CVE-2018-1000035)
Antonio Carista discovered that unzip incorrectly handled certain
specially crafted ZIP archives. If a user or automated system using unzip
were tricked into opening a specially crafted zip file, an attacker could
exploit this to cause a crash, resulting in a denial of service. This
issue only affected Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
(CVE-2018-18384)
It was discovered that unzip incorrectly handled certain specially crafted
ZIP archives. If a use
OSV
CVE-2018-18384: Info-ZIP UnZip 6
osv·2018-10-16·CVSS 5.5
CVE-2018-18384 [MEDIUM] CVE-2018-18384: Info-ZIP UnZip 6
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
Ubuntu
unzip vulnerabilities
vendor_ubuntu·2020-12-16·CVSS 4.0
CVE-2018-1000035 [MEDIUM] unzip vulnerabilities
Title: unzip vulnerabilities
Summary: Several security issues were fixed in unzip.
Rene Freingruber discovered that unzip incorrectly handled certain
specially crafted password protected ZIP archives. If a user or automated
system using unzip were tricked into opening a specially crafted zip file,
an attacker could exploit this to cause a crash, resulting in a denial of
service. (CVE-2018-1000035)
Antonio Carista discovered that unzip incorrectly handled certain
specially crafted ZIP archives. If a user or automated system using unzip
were tricked into opening a specially crafted zip file, an attacker could
exploit this to cause a crash, resulting in a denial of service. This
issue only affected Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
(CVE-2018-18384)
It was discovered that unzip incorr
Microsoft
Info-ZIP UnZip 6.0 has a buffer overflow in list.c when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value because a buffer size is 10 and is su
vendor_msrc·2018-10-09·CVSS 5.5
CVE-2018-18384 [MEDIUM] CWE-119 Info-ZIP UnZip 6.0 has a buffer overflow in list.c when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value because a buffer size is 10 and is su
Info-ZIP UnZip 6.0 has a buffer overflow in list.c when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value because a buffer size is 10 and is supposed to be 12.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we
Red Hat
unzip: Buffer overflow in list.c resulting in a denial of service
vendor_redhat·2018-09-28·CVSS 5.5
CVE-2018-18384 [MEDIUM] CWE-119 unzip: Buffer overflow in list.c resulting in a denial of service
unzip: Buffer overflow in list.c resulting in a denial of service
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
Package: unzip (Red Hat Enterprise Linux 5) - Will not fix
Package: unzip (Red Hat Enterprise Linux 6) - Will not fix
Package: unzip (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2018-18384: unzip - Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a cra...
vendor_debian·2018·CVSS 5.5
CVE-2018-18384 [MEDIUM] CVE-2018-18384: unzip - Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a cra...
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
Scope: local
bookworm: resolved (fixed in 6.0-11)
bullseye: resolved (fixed in 6.0-11)
forky: resolved (fixed in 6.0-11)
sid: resolved (fixed in 6.0-11)
trixie: resolved (fixed in 6.0-11)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00009.htmlhttps://access.redhat.com/errata/RHSA-2019:2159https://bugzilla.suse.com/show_bug.cgi?id=1110194https://sourceforge.net/p/infozip/bugs/53/http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00009.htmlhttps://access.redhat.com/errata/RHSA-2019:2159https://bugzilla.suse.com/show_bug.cgi?id=1110194https://sourceforge.net/p/infozip/bugs/53/
2018-10-16
Published