Not exactly news...
Posted Oct 2, 2002 21:45 UTC (Wed) by
roelofs (guest, #2599)
Parent article:
File overwrite vulnerability in tar and unzip
The UnZip vulnerability was reported on Bugtraq more than a year ago and has been prominently displayed
on the UnZip home page
ever since then. UnZip 5.5, which fixes the bug, was released more than seven
and a half months ago.
There are also a number of related (i.e., data-loss) bugs against various versions
of Zip and UnZip listed on the Info-ZIP FAQ page.
Greg Roelofs
Info-ZIP
(
Log in to post comments)