USN-3699-1: zziplib vulnerabilities
It was discovered that zziplib incorrectly handled certain malformed ZIP files. If a user or automated system were tricked into opening a specially crafted ZIP file, a remote attacker could cause zziplib to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-3699-1?
USN-3699-1 has a severity rating that indicates it can lead to denial of service or potentially arbitrary code execution.
How do I fix USN-3699-1?
To fix USN-3699-1, you should update the 'libzzip-0-13' package to the latest version available for your Ubuntu release.
Which versions of Ubuntu are affected by USN-3699-1?
USN-3699-1 affects Ubuntu versions 18.04, 17.10, 16.04, and 14.04.
What type of vulnerability is addressed in USN-3699-1?
USN-3699-1 addresses a vulnerability in zziplib that can cause crashes of the application when processing malformed ZIP files.
Can USN-3699-1 lead to remote attacks?
Yes, USN-3699-1 can potentially allow a remote attacker to induce a denial of service or execute arbitrary code on a vulnerable system.