search menu icon-carat-right cmu-wordmark

CERT Coordination Center

ZIP archives containing files with large filenames can cause buffer overflows

Vulnerability Note VU#383779

Original Release Date: 2002-10-02 | Last Revised: 2003-01-06

Overview

Multiple file decompression utilities contain buffer overflow vulnerabilities for which the impacts vary.

Description

Researchers at Rapid7, Inc. have discovered that multiple file decompression utilities are susceptible to buffer overflows as a result of large filenames embedded in crafted ZIP archive files. When affected users attempt to decompress these ZIP files, the buffer overflow may result in execution of arbitrary code.

Impact

The impact of this vulnerability may vary depending upon the product and its execution environment. Typically, successful exploitation of a buffer overflow will allow the attacker to execute arbitrary code with the privileges of the user running the application.

Solution

Apply a patch

The vendor section of this document lists vendors who have been notified of this issue and their responses.

Vendor Information

383779
 

View all 50 vendors View less vendors


CVSS Metrics

Group Score Vector
Base
Temporal
Environmental

References

Acknowledgements

This vulnerability was reported to the CERT/CC by Rapid7, Inc.

This document was written by Jeffrey P. Lanza.

Other Information

CVE IDs: CVE-2002-0370
Severity Metric: 20.25
Date Public: 2002-10-02
Date First Published: 2002-10-02
Date Last Updated: 2003-01-06 21:54 UTC
Document Revision: 22

Sponsored by CISA.