yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2015-1315
Component Overview
Vulnerability Overview
Name
CVE-2015-1315
Source
NVD (
link
)
Debian (
link
)
Description
Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8.
CWEs
CWE-119
Published Date
Feb 23, 2015
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.ubuntu.com/usn/USN-2502-1
Patch
http://www.ubuntu.com/usn/USN-2502-1
Patch
Analysis
#
Affected Component
Analysis
unzip
Patched
Vulnerability Rating
#
7.5
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
unzip
buildroot
2025.02.x
6.0
Not Affected
unzip
buildroot
master
6.0
Not Affected
unzip
yocto
master
6.0
Patched
unzip
yocto
scarthgap
6.0
Patched
Resolved with patches
#
unzip (yocto:kirkstone)
#
Title
Author
Resolve
1
unzip files encoded with non-latin, non-unicode file names
Giovanni Scafora <giovanni.archlinux.org>
CVE-2015-1315
unzip (yocto:master)
#
Title
Author
Resolve
1
unzip files encoded with non-latin, non-unicode file names
Giovanni Scafora <giovanni.archlinux.org>
CVE-2015-1315
unzip (yocto:scarthgap)
#
Title
Author
Resolve
1
unzip files encoded with non-latin, non-unicode file names
Giovanni Scafora <giovanni.archlinux.org>
CVE-2015-1315