First published: Mon Jan 24 2022(Updated: )
A null pointer dereference was found in unzip. The bug appears to be located in the code responsible for handling Unicode strings. This allows an attacker to perform a denial of service and possibly opens up other attack vectors. References: <a href="https://bugs.launchpad.net/ubuntu/+source/unzip/+bug/1957077">https://bugs.launchpad.net/ubuntu/+source/unzip/+bug/1957077</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Info-ZIP Zip |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2044583 is considered significant due to its potential for causing denial of service.
To fix REDHAT-BUG-2044583, update the unzip software to the latest patched version provided by the vendor.
The systems affected by REDHAT-BUG-2044583 include those running the Info-ZIP unzip software.
REDHAT-BUG-2044583 enables denial of service attacks and may open up other vulnerabilities due to null pointer dereferences.
The REDHAT-BUG-2044583 vulnerability was reported within the context of Red Hat's bug tracking system.