Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-1315

Опубликовано: 23 фев. 2015
Источник: nvd
CVSS2: 7.5
EPSS Средний

Описание

Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:info-zip:unzip:6.10b:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.12096
Средний

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 11 лет назад

Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8.

redhat
почти 11 лет назад

Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8.

debian
почти 11 лет назад

Buffer overflow in the charset_to_intern function in unix/unix.c in In ...

github
больше 3 лет назад

Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8.

EPSS

Процентиль: 94%
0.12096
Средний

7.5 High

CVSS2

Дефекты

CWE-119