Logo
vulnerabilityCVE-2014-9636
Name
CVE-2014-9636
Source
NVD ( link)Debian ( link)
Description
unzip 6.0 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via an extra field with an uncompressed size smaller than the compressed field size in a zip archive that advertises STORED method compression.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
unzip
Patched

Vulnerability Rating#


5
CVSSv2

Others affected component#


Name
Project
Project Version
Version
Status
openwrt
openwrt-25.12
6.0-r9
Patched

Resolved with patches#


unzip (openwrt:master)

#
Title
Author
Resolve
1
fix: out-of-bounds read or write and crash
OpenWrt community <openwrt-devel@lists.openwrt.org>
CVE-2014-9636

unzip (openwrt:openwrt-25.12)

#
Title
Author
Resolve
1
fix: out-of-bounds read or write and crash
OpenWrt community <openwrt-devel@lists.openwrt.org>
CVE-2014-9636