CVE-2022-0530
09.02.2022, 23:15
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.Enginsight
Vendor | Product | Version |
---|---|---|
unzip_project | unzip | 6.0 |
redhat | enterprise_linux | 8.0 |
apple | mac_os_x | 10.15 ≤ 𝑥 < 10.15.7 |
apple | mac_os_x | 10.15.7 |
apple | mac_os_x | 10.15.7:security_update_2020 |
apple | mac_os_x | 10.15.7:security_update_2020-001 |
apple | mac_os_x | 10.15.7:security_update_2020-005 |
apple | mac_os_x | 10.15.7:security_update_2020-007 |
apple | mac_os_x | 10.15.7:security_update_2021-001 |
apple | mac_os_x | 10.15.7:security_update_2021-002 |
apple | mac_os_x | 10.15.7:security_update_2021-003 |
apple | mac_os_x | 10.15.7:security_update_2021-006 |
apple | mac_os_x | 10.15.7:security_update_2021-007 |
apple | mac_os_x | 10.15.7:security_update_2021-008 |
apple | mac_os_x | 10.15.7:security_update_2022-001 |
apple | mac_os_x | 10.15.7:security_update_2022-002 |
apple | mac_os_x | 10.15.7:security_update_2022-003 |
apple | mac_os_x | 10.15.7:supplemental_update |
apple | macos | 11.0 ≤ 𝑥 < 11.6.6 |
apple | macos | 12.0.0 ≤ 𝑥 < 12.4 |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References