Logo
vulnerabilityCVE-2015-7696
Name
CVE-2015-7696
Source
NVD ( link)Debian ( link)
Description
Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly execute arbitrary code via a crafted password-protected ZIP archive, possibly related to an Extra-Field size value.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
unzip
Patched

Vulnerability Rating#


6.8
CVSSv2

Others affected component#


Name
Project
Project Version
Version
Status
openwrt
master
6.0-r9
Patched

Resolved with patches#


unzip (openwrt:master)

#
Title
Author
Resolve
1
fix: heap-based buffer over-read and application crash
OpenWrt community <openwrt-devel@lists.openwrt.org>
CVE-2015-7696

unzip (openwrt:openwrt-25.12)

#
Title
Author
Resolve
1
fix: heap-based buffer over-read and application crash
OpenWrt community <openwrt-devel@lists.openwrt.org>
CVE-2015-7696