Info-ZIP UnZip 5.42 and earlier allows attackers to...
Low severity
Unreviewed
Published
Apr 30, 2022
to the GitHub Advisory Database
•
Updated Jan 30, 2023
Description
Published by the National Vulnerability Database
Jul 12, 2001
Published to the GitHub Advisory Database
Apr 30, 2022
Last updated
Jan 30, 2023
Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.
References