Oval Definition:oval:org.cisecurity:def:110
Revision Date:2016-02-08Version:4
Title:DSA-3152-1 -- unzip -- security update
Description:A flaw was found in the test_compr_eb() function allowing out-of-bounds read and write access to memory locations. By carefully crafting a corrupt ZIP archive an attacker can trigger a heap overflow, resulting in application crash or possibly having other unspecified impact.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2014-9636
DSA-3152-1
Platform(s):Debian GNU/kFreeBSD 7.0
Debian GNU/Linux 7.0
Product(s):unzip
Definition Synopsis
  • Debian 7 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND unzip is earlier than 0:6.0-8+deb7u2
  • BACK