CVE-2021-4217
Summary
| CVE | CVE-2021-4217 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-08-24 16:15:00 UTC |
| Updated | 2022-11-29 15:45:00 UTC |
| Description | A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereference. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| 2044583 – (CVE-2021-4217) CVE-2021-4217 unzip: Null pointer dereference in Unicode strings code |
MISC |
bugzilla.redhat.com |
|
| Red Hat Customer Portal - Access to 24x7 support and knowledge |
MISC |
access.redhat.com |
|
| Bug #1957077 “SIGSEGV during processing of unicode string” : Bugs : unzip package : Ubuntu |
MISC |
bugs.launchpad.net |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 198984 Ubuntu Security Notification for unzip Vulnerabilities (USN-5673-1)
- 296063 Oracle Solaris 11.4 Support Repository Update (SRU) 45.119.2 Missing (CPUAPR2022)
- 354477 Amazon Linux Security Advisory for unzip : ALAS2022-2022-221
- 354574 Amazon Linux Security Advisory for unzip : ALAS-2022-221
- 354660 Amazon Linux Security Advisory for unzip : ALAS2-2023-1906
- 355191 Amazon Linux Security Advisory for unzip : ALAS2023-2023-029
- 502799 Alpine Linux Security Update for unzip
- 672390 EulerOS Security Update for unzip (EulerOS-SA-2022-2747)
- 672396 EulerOS Security Update for unzip (EulerOS-SA-2022-2782)
- 672400 EulerOS Security Update for unzip (EulerOS-SA-2022-2809)
- 672443 EulerOS Security Update for unzip (EulerOS-SA-2022-2834)
- 672466 EulerOS Security Update for unzip (EulerOS-SA-2022-2860)
- 903737 Common Base Linux Mariner (CBL-Mariner) Security Update for unzip (10708)
- 903875 Common Base Linux Mariner (CBL-Mariner) Security Update for unzip (10680)
- 905670 Common Base Linux Mariner (CBL-Mariner) Security Update for unzip (10708-1)
- 906577 Common Base Linux Mariner (CBL-Mariner) Security Update for unzip (10708-3)