Logo
vulnerabilityCVE-2015-7697
Name
CVE-2015-7697
Source
NVD ( link)Debian ( link)
Description
Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (infinite loop) via empty bzip2 data in a ZIP archive.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
unzip
Patched

Vulnerability Rating#


4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
6.0
Patched
buildroot
master
6.0
Patched
yocto
kirkstone
6.0
Patched
yocto
master
6.0
Patched

Resolved with patches#


unzip (buildroot:2025.02.x)

#
Title
Author
Resolve
1
fix infinite loop when extracting empty bzip2 data
Kamil Dudka <kdudka@redhat.com>
CVE-2015-7697

unzip (buildroot:master)

#
Title
Author
Resolve
1
fix infinite loop when extracting empty bzip2 data
Kamil Dudka <kdudka@redhat.com>
CVE-2015-7697

unzip (yocto:kirkstone)

#
Title
Author
Resolve
1
fix infinite loop when extracting empty bzip2 data
Kamil Dudka <kdudka@redhat.com>
CVE-2015-7697

unzip (yocto:master)

#
Title
Author
Resolve
1
fix infinite loop when extracting empty bzip2 data
Kamil Dudka <kdudka@redhat.com>
CVE-2015-7697

unzip (yocto:scarthgap)

#
Title
Author
Resolve
1
fix infinite loop when extracting empty bzip2 data
Kamil Dudka <kdudka@redhat.com>
CVE-2015-7697