CVE-2018-18384

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
16/10/2018
Last modified:
16/12/2019

Description

Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:unzip_project:unzip:6.0:*:*:*:*:*:*:*