Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Info-ZIP UnZip 'inflate_dynamic()' Remote Code Execution Vulnerability

UnZip is prone to a remote code-execution vulnerability.

Attackers may exploit this issue by enticing victims into opening a maliciously crafted ZIP file ('.zip').

Successful exploits may allow attackers to execute arbitrary code with the privileges of the user running the application. This may facilitate a compromise of vulnerable computers.

UnZip 5.52 is vulnerable; other versions may be affected as well.







 

Privacy Statement
Copyright 2009, SecurityFocus