CVE-2001-1269: Low severity Info-ZIP UnZip vulnerability
Published Jul 12, 2001
·Updated
Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.
Affected Software
1 affected component
Info-ZIP UnZip<=5.42
Remediation
Patch Available
Event History
Jul 12, 2001
CVE Published
04:00 AM
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1269?
CVE-2001-1269 is classified as a critical vulnerability due to its ability to allow attackers to overwrite arbitrary files.
2
How do I fix CVE-2001-1269?
To fix CVE-2001-1269, upgrade to a version of Info-ZIP UnZip that is newer than 5.42, which addresses this vulnerability.
3
What are the potential impacts of CVE-2001-1269?
The potential impacts of CVE-2001-1269 include unauthorized file overwriting and potential data loss or corruption.
4
Which versions of Info-ZIP UnZip are affected by CVE-2001-1269?
Info-ZIP UnZip versions 5.42 and earlier are affected by CVE-2001-1269.
5
Who may be impacted by CVE-2001-1269?
Users and administrators of systems utilizing affected versions of Info-ZIP UnZip are at risk of exploitation through CVE-2001-1269.