CVE-2022-0529
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
- Unzip Project Unzip
- = 6.0
- CVSS 3.1
- 5.5 MEDIUM
- EPSS
- 2.4% (83th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2022-02-09
CVE-2022-0529 at NVD
2 known exploits for CVE-2022-0529
Proof-of-concept code and exploit modules indexed by Sploitus