CVE-2015-7697
Published: August 31, 2023Last modified: August 31, 2023
Description
Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (infinite loop) via empty bzip2 data in a ZIP archive.
Status
Product | Release | Package | Status |
---|---|---|---|
Alpaquita Linux | 23 LTS | unzip | Not affected (6.0-r13) |
Stream | unzip | Not affected (6.0-r14) |
References
- http://sourceforge.net/p/infozip/patches/23/
- http://www.debian.org/security/2015/dsa-3386
- http://www.openwall.com/lists/oss-security/2015/09/07/4
- http://www.openwall.com/lists/oss-security/2015/09/15/6
- http://www.openwall.com/lists/oss-security/2015/10/11/5
- http://www.securityfocus.com/bid/76863
- http://www.securitytracker.com/id/1034027
- http://www.ubuntu.com/usn/USN-2788-1
- http://www.ubuntu.com/usn/USN-2788-2