Debian Unzip vulnerabilities
18 known vulnerabilities affecting debian/unzip.
Total CVEs
18
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH4MEDIUM9LOW4
Vulnerabilities
Page 1 of 1
CVE-2003-0282P4LOWCVSS 2.6PoCfixed in unzip 5.50-3 (bookworm)2003
CVE-2003-0282 [LOW] CVE-2003-0282: unzip - Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite ar...
Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.
Scope: local
bookworm: resolved (fixed in 5.50-3)
bullseye: resolved (fixed in 5.50-3)
forky: resolved (fixed in 5.50-3)
sid: resolved (fixed in 5.50-3)
trixie: resolved (fix
debian
CVE-2018-1000035P3HIGHCVSS 7.8fixed in unzip 6.0-22 (bookworm)2018
CVE-2018-1000035 [HIGH] CVE-2018-1000035: unzip - A heap-based buffer overflow exists in Info-Zip UnZip version <= 6.00 in the pro...
A heap-based buffer overflow exists in Info-Zip UnZip version <= 6.00 in the processing of password-protected archives that allows an attacker to perform a denial of service or to possibly achieve code execution.
Scope: local
bookworm: resolved (fixed in 6.0-22)
bullseye: resolved (fixed in 6.0-22)
forky: resolved (fixed in 6.0-22)
sid: resolved (fixed in 6.0-22)
debian
CVE-2014-8141P3HIGHCVSS 7.8fixed in unzip 6.0-13 (bookworm)2014
CVE-2014-8141 [HIGH] CVE-2014-8141: unzip - Heap-based buffer overflow in the getZip64Data function in Info-ZIP UnZip 6.0 an...
Heap-based buffer overflow in the getZip64Data function in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Scope: local
bookworm: resolved (fixed in 6.0-13)
bullseye: resolved (fixed in 6.0-13)
forky: resolved (fixed in 6.0-13)
sid: resolved (fixed in 6.0-13)
trixie:
debian
CVE-2014-8140P3HIGHCVSS 7.8fixed in unzip 6.0-13 (bookworm)2014
CVE-2014-8140 [HIGH] CVE-2014-8140: unzip - Heap-based buffer overflow in the test_compr_eb function in Info-ZIP UnZip 6.0 a...
Heap-based buffer overflow in the test_compr_eb function in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Scope: local
bookworm: resolved (fixed in 6.0-13)
bullseye: resolved (fixed in 6.0-13)
forky: resolved (fixed in 6.0-13)
sid: resolved (fixed in 6.0-13)
trixie
debian
CVE-2014-8139P3HIGHCVSS 7.8fixed in unzip 6.0-16 (bookworm)2014
CVE-2014-8139 [HIGH] CVE-2014-8139: unzip - Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and e...
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Scope: local
bookworm: resolved (fixed in 6.0-16)
bullseye: resolved (fixed in 6.0-16)
forky: resolved (fixed in 6.0-16)
sid: resolved (fixed in 6.0-16)
trixie: re
debian
CVE-2008-0888P3CRITICALCVSS 9.3fixed in unzip 5.52-11 (bookworm)2008
CVE-2008-0888 [CRITICAL] CVE-2008-0888: unzip - The NEEDBITS macro in the inflate_dynamic function in inflate.c for unzip can be...
The NEEDBITS macro in the inflate_dynamic function in inflate.c for unzip can be invoked using invalid buffers, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a free of uninitialized or previously-freed data.
Scope: local
bookworm: resolved (fixed in 5.52-11)
bullseye: resolved
debian
CVE-2005-4667P4LOWCVSS 3.7PoCfixed in unzip 5.52-7 (bookworm)2005
CVE-2005-4667 [LOW] CVE-2005-4667: unzip - Buffer overflow in UnZip 5.50 and earlier allows user-assisted attackers to exec...
Buffer overflow in UnZip 5.50 and earlier allows user-assisted attackers to execute arbitrary code via a long filename command line argument. NOTE: since the overflow occurs in a non-setuid program, there are not many scenarios under which it poses a vulnerability, unless unzip is passed long arguments when it is invoked from other programs.
Scope: local
bookworm: resolv
debian
CVE-2015-7696P3MEDIUMCVSS 6.8fixed in unzip 6.0-19 (bookworm)2015
CVE-2015-7696 [MEDIUM] CVE-2015-7696: unzip - Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (heap-ba...
Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly execute arbitrary code via a crafted password-protected ZIP archive, possibly related to an Extra-Field size value.
Scope: local
bookworm: resolved (fixed in 6.0-19)
bullseye: resolved (fixed in 6.0-19)
forky: resolved (fixed in 6.0-1
debian
CVE-2014-9636P4MEDIUMCVSS 5.0fixed in unzip 6.0-15 (bookworm)2014
CVE-2014-9636 [MEDIUM] CVE-2014-9636: unzip - unzip 6.0 allows remote attackers to cause a denial of service (out-of-bounds re...
unzip 6.0 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via an extra field with an uncompressed size smaller than the compressed field size in a zip archive that advertises STORED method compression.
Scope: local
bookworm: resolved (fixed in 6.0-15)
bullseye: resolved (fixed in 6.0-15)
forky: resolved (fixed in 6.0-15)
si
debian
CVE-2022-0529P4MEDIUMCVSS 5.5fixed in unzip 6.0-27 (bookworm)2022
CVE-2022-0529 [MEDIUM] CVE-2022-0529: unzip - A flaw was found in Unzip. The vulnerability occurs during the conversion of a w...
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Scope: local
bookworm: resolved (fixed in 6.0-27)
bullseye: resolved (fixed in 6.0-26+deb11u1)
forky: resolved
debian
CVE-2022-0530P4MEDIUMCVSS 5.5fixed in unzip 6.0-27 (bookworm)2022
CVE-2022-0530 [MEDIUM] CVE-2022-0530: unzip - A flaw was found in Unzip. The vulnerability occurs during the conversion of a w...
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Scope: local
bookworm: resolved (fixed in 6.0-27)
bullseye: resolved (fixed in 6.0-26+deb11u1)
forky: resolved
debian
CVE-2018-18384P4MEDIUMCVSS 5.5fixed in unzip 6.0-11 (bookworm)2018
CVE-2018-18384 [MEDIUM] CVE-2018-18384: unzip - Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a cra...
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
Scope: local
bookworm: resolved (fixed in 6.0-11)
bullseye: resolved (fixed in 6.0-11)
forky: resolved (fixed in 6.0-11)
sid: resolved (fixed in 6.0-
debian
CVE-2015-7697P4MEDIUMCVSS 4.3fixed in unzip 6.0-19 (bookworm)2015
CVE-2015-7697 [MEDIUM] CVE-2015-7697: unzip - Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (infinit...
Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (infinite loop) via empty bzip2 data in a ZIP archive.
Scope: local
bookworm: resolved (fixed in 6.0-19)
bullseye: resolved (fixed in 6.0-19)
forky: resolved (fixed in 6.0-19)
sid: resolved (fixed in 6.0-19)
trixie: resolved (fixed in 6.0-19)
debian
CVE-2016-9844P4MEDIUMCVSS 4.0fixed in unzip 6.0-21 (bookworm)2016
CVE-2016-9844 [MEDIUM] CVE-2016-9844: unzip - Buffer overflow in the zi_short function in zipinfo.c in Info-Zip UnZip 6.0 allo...
Buffer overflow in the zi_short function in zipinfo.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via a large compression method value in the central directory file header.
Scope: local
bookworm: resolved (fixed in 6.0-21)
bullseye: resolved (fixed in 6.0-21)
forky: resolved (fixed in 6.0-21)
sid: resolved (fixed in 6.0-21)
trixi
debian
CVE-2014-9913P4MEDIUMCVSS 4.0fixed in unzip 6.0-21 (bookworm)2014
CVE-2014-9913 [MEDIUM] CVE-2014-9913: unzip - Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allow...
Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of service (crash) via vectors related to the compression method.
Scope: local
bookworm: resolved (fixed in 6.0-21)
bullseye: resolved (fixed in 6.0-21)
forky: resolved (fixed in 6.0-21)
sid: resolved (fixed in 6.0-21)
trixie: resolved (fixed in 6.0-21)
debian
CVE-2005-0602P4MEDIUMCVSS 6.2fixed in unzip 5.52-1 (bookworm)2005
CVE-2005-0602 [MEDIUM] CVE-2005-0602: unzip - Unzip 5.51 and earlier does not properly warn the user when extracting setuid or...
Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges.
Scope: local
bookworm: resolved (fixed in 5.52-1)
bullseye: resolved (fixed in 5.52-1)
forky: resolved (fixed in 5.52-1)
sid: resolved (fixed in 5.52-1)
trixie: resolved (fixed in 5.52-1)
debian
CVE-2005-2475P4LOWCVSS 1.2fixed in unzip 5.52-4 (bookworm)2005
CVE-2005-2475 [LOW] CVE-2005-2475: unzip - Race condition in Unzip 5.52 allows local users to modify permissions of arbitra...
Race condition in Unzip 5.52 allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by Unzip after the decompression is complete.
Scope: local
bookworm: resolved (fixed in 5.52-4)
bullseye: resolved (fixed in 5.52-4)
forky: resolved (fixed in 5.52-4)
sid: resolved (fixed i
debian
CVE-2019-13232P4LOWCVSS 3.3fixed in unzip 6.0-24 (bookworm)2019
CVE-2019-13232 [LOW] CVE-2019-13232: unzip - Info-ZIP UnZip 6.0 mishandles the overlapping of files inside a ZIP container, l...
Info-ZIP UnZip 6.0 mishandles the overlapping of files inside a ZIP container, leading to denial of service (resource consumption), aka a "better zip bomb" issue.
Scope: local
bookworm: resolved (fixed in 6.0-24)
bullseye: resolved (fixed in 6.0-24)
forky: resolved (fixed in 6.0-24)
sid: resolved (fixed in 6.0-24)
trixie: resolved (fixed in 6.0-24)
debian