Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2020-01-31T22:00:28
Updated: 2024-08-06T13:10:51.008Z
Reserved: 2014-10-10T00:00:00
Link: CVE-2014-8139
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-01-31T22:15:10.760
Modified: 2024-11-21T02:18:38.457
Link: CVE-2014-8139
Redhat