Activity log
- Created suggestion
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip …
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
References
Affected products
- ==6.0 and earlier
Matching in nixpkgs
pkgs.unzip
Extraction utility for archives compressed in .zip format
pkgs.runzip
Tool to convert filename encoding inside a ZIP archive
pkgs.ripunzip
Tool to unzip files in parallel
pkgs.unzipNLS
Extraction utility for archives compressed in .zip format
pkgs.haskellPackages.unzip-traversable
Unzip functions for general Traversable containers
Package maintainers
-
@LeSuisse Thomas Gerbet <thomas@gerbet.me>
-
@7c6f434c Michael Raskin <7c6f434c@mail.ru>
-
@RossComputerGuy Tristan Ross <tristan.ross@midstall.com>