3.3
CVSSv3

CVE-2021-4217

Published: 24/08/2022 Updated: 29/11/2022
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereference. This flaw allows an malicious user to input a specially crafted zip file, leading to a crash or code execution.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

unzip project unzip 6.0

fedoraproject fedora 35

redhat enterprise linux 7.0

redhat enterprise linux 6.0

redhat enterprise linux 8.0

redhat enterprise linux 9.0

Vendor Advisories

Several security issues were fixed in unzip ...
A flaw was found in unzip The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereference This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution (CVE-2021-4217) A flaw was found in Unzip The vulnerability occurs during the conversion of a wide ...
ALAS-2022-221 Amazon Linux 2022 Security Advisory: ALAS-2022-221 Advisory Release Date: 2022-12-06 16:42 Pacific ...