CVE-2004-1465: Buffer Overflow
Published Dec 31, 2004
·Updated
Multiple buffer overflows in WinZip 9.0 and earlier may allow attackers to execute arbitrary code via multiple vectors, including the command line.
Affected Software
5 affected components
Winzip Winzip=7.0
Winzip Winzip=8.1-sr1
Winzip Winzip=9.0
Winzip Winzip=8.1
Winzip Winzip=8.0
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Feb 13, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1465?
CVE-2004-1465 has a high severity rating due to the potential for arbitrary code execution.
2
How do I fix CVE-2004-1465?
To fix CVE-2004-1465, upgrade to WinZip version 9.0 SR1 or later.
3
What software versions are affected by CVE-2004-1465?
CVE-2004-1465 affects WinZip versions 7.0, 8.0, 8.1, and 9.0.
4
What type of vulnerability is CVE-2004-1465?
CVE-2004-1465 is a multiple buffer overflow vulnerability.
5
Can CVE-2004-1465 be exploited remotely?
Yes, CVE-2004-1465 can be exploited remotely through various command line inputs.