CVE-2022-0530
published 2022-02-09CVE-2022-0530: A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This…
PriorityP425medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
2.11%
79.7th percentile
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x | >= 10.15 < 10.15.7 | 10.15.7 |
| apple | macos | >= 11.0 < 11.6.6 | 11.6.6 |
| apple | macos | >= 12.0.0 < 12.4 | 12.4 |
| apple | macos_big_sur | — | — |
| apple | macos_monterey | — | — |
| apple | security_update_2022-004_catalina | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | unzip | < unzip 6.0-27 (bookworm) | unzip 6.0-27 (bookworm) |
| fedoraproject | fedora | — | — |
| msrc | azl3_unzip_6.0-21_on_azure_linux_3.0 | — | — |
| msrc | azl3_unzip_6.0-22_on_azure_linux_3.0 | — | — |
| msrc | azure_linux_3.0_arm | — | — |
| msrc | azure_linux_3.0_x64 | — | — |
| msrc | cbl2_unzip_6.0-21_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| msrc | cm1_unzip_6.0-19_on_cbl_mariner_1.0 | — | — |
| redhat | enterprise_linux | — | — |
| unzip_project | unzip | — | — |
| unzip_project | unzip | >= 0 < 6.0-26+deb11u1 | 6.0-26+deb11u1 |
| unzip_project | unzip | >= 0 < 6.0-27 | 6.0-27 |
| unzip_project | unzip | >= 0 < 6.0-27 | 6.0-27 |
| unzip_project | unzip | >= 0 < 6.0-27 | 6.0-27 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_redhat7.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_ubuntu3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
unzip vulnerabilities
vendor_ubuntu·2022-10-13·CVSS 3.3
CVE-2022-0529 [LOW] unzip vulnerabilities
Title: unzip vulnerabilities
Summary: Several security issues were fixed in unzip.
It was discovered that unzip did not properly handle unicode strings under
certain circumstances. If a user were tricked into opening a specially crafted
zip file, an attacker could possibly use this issue to cause unzip to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2021-4217)
It was discovered that unzip did not properly perform bounds checking while
converting wide strings to local strings. If a user were tricked into opening a
specially crafted zip file, an attacker could possibly use this issue to cause
unzip to crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2022-0529, CVE-2022-0530)
Instructions: In general, a standard system
Red Hat
vim: use-after-free in movemark() at mark.c
vendor_redhat·2022-09-22·CVSS 7.8
CVE-2022-3256 [HIGH] CWE-416 vim: use-after-free in movemark() at mark.c
vim: use-after-free in movemark() at mark.c
Use After Free in GitHub repository vim/vim prior to 9.0.0530.
A heap use-after-free vulnerability was found in vim's movemark() function of the src/mark.c file. This issue occurs because vim uses freed memory when 'autocmd' changes the mark. This flaw allows an attacker to trick a user into opening a specially crafted file, triggering a heap use-after-free that causes an application to crash, possibly executing code and corrupting memory.
Statement: Red Hat Product Security has rated this issue as having a Low security impact, because the "victim" has to run an untrusted file IN SCRIPT MODE. Someone who is running untrusted files in script mode is equivalent to someone just taking a random python script and running it.
Since Red Hat Enterpris
Apple
CVE-2022-0530: macOS Big Sur 11.6.6
vendor_apple·2022-05-16·CVSS 5.5
CVE-2022-0530 [MEDIUM] CVE-2022-0530: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2022-0530
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Apple
CVE-2022-0530: Security Update 2022-004 Catalina
vendor_apple·2022-05-16·CVSS 5.5
CVE-2022-0530 [MEDIUM] CVE-2022-0530: Security Update 2022-004 Catalina
Apple Security Update: About the security content of Security Update 2022-004 Catalina
Product: Security Update 2022-004 Catalina
CVE: CVE-2022-0530
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Apple
CVE-2018-25032: macOS Big Sur 11.6.6
vendor_apple·2022-05-16·CVSS 7.5
CVE-2018-25032 [HIGH] CVE-2018-25032: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2018-25032
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Apple
CVE-2018-25032: macOS Monterey 12.4
vendor_apple·2022-05-16·CVSS 7.5
CVE-2018-25032 [HIGH] CVE-2018-25032: macOS Monterey 12.4
Apple Security Update: About the security content of macOS Monterey 12.4
Product: macOS Monterey
Version: 12.4
CVE: CVE-2018-25032
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Apple
CVE-2018-25032: Security Update 2022-004 Catalina
vendor_apple·2022-05-16·CVSS 7.5
CVE-2018-25032 [HIGH] CVE-2018-25032: Security Update 2022-004 Catalina
Apple Security Update: About the security content of Security Update 2022-004 Catalina
Product: Security Update 2022-004 Catalina
CVE: CVE-2018-25032
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Apple
CVE-2022-0530: macOS Monterey 12.4
vendor_apple·2022-05-16·CVSS 5.5
CVE-2022-0530 [MEDIUM] CVE-2022-0530: macOS Monterey 12.4
Apple Security Update: About the security content of macOS Monterey 12.4
Product: macOS Monterey
Version: 12.4
CVE: CVE-2022-0530
Component: CVE-2022-0530
Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
Microsoft
Conversion of a wide string to a local string that leads to a heap of out-of-bound write
vendor_msrc·2022-02-08·CVSS 5.5
CVE-2022-0530 [MEDIUM] Conversion of a wide string to a local string that leads to a heap of out-of-bound write
Conversion of a wide string to a local string that leads to a heap of out-of-bound write
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
Red Hat, Inc.: Red Hat, Inc.
Customer Action Required: Yes
Remediatio
Red Hat
unzip: SIGSEGV during the conversion of an utf-8 string to a local string
vendor_redhat·2022-01-31·CVSS 5.5
CVE-2022-0530 [MEDIUM] CWE-119 unzip: SIGSEGV during the conversion of an utf-8 string to a local string
unzip: SIGSEGV during the conversion of an utf-8 string to a local string
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
A flaw was found in Unzip. The vulnerability occurs during the conversion of a UTF-8 string to a local string that leads to a segmentation fault. This flaw allows an attacker to input a specially crafted zip file, leading to a crash.
Statement: This issue is classified with a low severity primarily because untrusted zip files are not typically extracted with the root user, limiting the impact of this issue. Additionally, this segmentation fault is caused by a
Debian
CVE-2022-0530: unzip - A flaw was found in Unzip. The vulnerability occurs during the conversion of a w...
vendor_debian·2022·CVSS 5.5
CVE-2022-0530 [MEDIUM] CVE-2022-0530: unzip - A flaw was found in Unzip. The vulnerability occurs during the conversion of a w...
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Scope: local
bookworm: resolved (fixed in 6.0-27)
bullseye: resolved (fixed in 6.0-26+deb11u1)
forky: resolved (fixed in 6.0-27)
sid: resolved (fixed in 6.0-27)
trixie: resolved (fixed in 6.0-27)
OSV
unzip vulnerabilities
osv·2022-10-13·CVSS 3.3
CVE-2021-4217 [LOW] unzip vulnerabilities
unzip vulnerabilities
It was discovered that unzip did not properly handle unicode strings under
certain circumstances. If a user were tricked into opening a specially crafted
zip file, an attacker could possibly use this issue to cause unzip to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2021-4217)
It was discovered that unzip did not properly perform bounds checking while
converting wide strings to local strings. If a user were tricked into opening a
specially crafted zip file, an attacker could possibly use this issue to cause
unzip to crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2022-0529, CVE-2022-0530)
GHSA
GHSA-8p3j-58qw-jhp4: A flaw was found in unzip 6
ghsa_unreviewed·2022-02-11
CVE-2022-0530 [HIGH] GHSA-8p3j-58qw-jhp4: A flaw was found in unzip 6
A flaw was found in unzip 6.0. The vulnerability occurs during the conversion of an utf-8 string to a local string that leads to a segmentation fault. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
OSV
CVE-2022-0530: A flaw was found in Unzip
osv·2022-02-09·CVSS 5.5
CVE-2022-0530 [MEDIUM] CVE-2022-0530: A flaw was found in Unzip
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2022/May/33http://seclists.org/fulldisclosure/2022/May/35http://seclists.org/fulldisclosure/2022/May/38https://bugzilla.redhat.com/show_bug.cgi?id=2051395https://github.com/ByteHackr/unzip_pochttps://lists.debian.org/debian-lts-announce/2022/09/msg00028.htmlhttps://security.gentoo.org/glsa/202310-17https://support.apple.com/kb/HT213255https://support.apple.com/kb/HT213256https://support.apple.com/kb/HT213257https://www.debian.org/security/2022/dsa-5202http://seclists.org/fulldisclosure/2022/May/33http://seclists.org/fulldisclosure/2022/May/35http://seclists.org/fulldisclosure/2022/May/38https://bugzilla.redhat.com/show_bug.cgi?id=2051395https://github.com/ByteHackr/unzip_pochttps://lists.debian.org/debian-lts-announce/2022/09/msg00028.htmlhttps://security.gentoo.org/glsa/202310-17https://support.apple.com/kb/HT213255https://support.apple.com/kb/HT213256https://support.apple.com/kb/HT213257https://www.debian.org/security/2022/dsa-5202
2022-02-09
Published