Oval Definition:oval:com.redhat.rhba:def:20070418
Revision Date:2007-06-07Version:632
Title:RHBA-2007:0418: unzip bug fix update (None)
Description:The unzip utility is used to list, test, or extract files from a zip archive.

This update addresses the following issues:

  • a TOCTOU bug that could be exploited to change file permissions (CVE-2005-2475)

  • a long filename buffer overflow vulnerability (CVE-2005-4667)

    All users of unzip should upgrade to these updated packages, which resolve these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2005-2475
    CVE-2005-4667
    RHBA-2007:0418
    RHBA-2007:0418-01
    RHBA-2007:0418-01
    RHBA-2007:0418
    Platform(s):Red Hat Enterprise Linux 3
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND unzip is earlier than 0:5.50-35.EL3
  • AND unzip is signed with Red Hat master key
  • BACK