2.1
CVSSv2

CVE-2016-9844

Published: 18/01/2017 Updated: 16/12/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4 | Impact Score: 1.4 | Exploitability Score: 2.5
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the zi_short function in zipinfo.c in Info-Zip UnZip 6.0 allows remote malicious users to cause a denial of service (crash) via a large compression method value in the central directory file header.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

unzip project unzip 6.0

Vendor Advisories

Debian Bug report logs - #847485 unzip: CVE-2014-9913: buffer overflow in "unzip -l" via list_files() in listc Package: src:unzip; Maintainer for src:unzip is Santiago Vila <sanvila@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 8 Dec 2016 16:33:08 UTC Severity: important Tags: securi ...
Debian Bug report logs - #847486 unzip: CVE-2016-9844: zipinfo buffer overflow Package: src:unzip; Maintainer for src:unzip is Santiago Vila <sanvila@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 8 Dec 2016 16:36:01 UTC Severity: important Tags: security, upstream Found in version un ...
Info-ZIP UnZip 60 allows remote attackers to cause a denial of service (infinite loop) via empty bzip2 data in a ZIP archive (CVE-2015-7697) Buffer overflow in the zi_short function in zipinfoc in Info-Zip UnZip 60 allows remote attackers to cause a denial of service (crash) via a large compression method value in the central directory file hea ...
Buffer overflow in the zi_short function in zipinfoc in Info-Zip UnZip 60 allows remote attackers to cause a denial of service (crash) via a large compression method value in the central directory file header ...
A buffer overflow in the zi_short function in zipinfoc in Info-Zip UnZip 60 allows remote attackers to cause a denial of service (crash) via a large compression method value in the central directory file header ...