Info-ZIP UnZip Hostile Destination Path Vulnerability
BID:5835
Info
Info-ZIP UnZip Hostile Destination Path Vulnerability
| Bugtraq ID: | 5835 |
| Class: | Access Validation Error |
| CVE: |
CVE-2001-1268 CVE-2001-1269 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 12 2001 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | Reported by 3APA3A <[email protected]>. |
| Vulnerable: |
Info-ZIP UnZip 5.42 Info-ZIP UnZip 5.40 Info-ZIP UnZip 5.32 Info-ZIP UnZip 5.31 Info-ZIP UnZip 5.3 Info-ZIP UnZip 5.2 |
| Not Vulnerable: |
Info-ZIP UnZip 5.50 |
Exploit / POC
Info-ZIP UnZip Hostile Destination Path Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
Info-ZIP UnZip Hostile Destination Path Vulnerability
Solution:
Gentoo Linux has released an advisory. It is highly suggested that users who have installed app-arch/unzip-5.42-r1 and earlier update their systems by issuing the following commands:
emerge rsync
emerge unzip
emerge clean
HP has released an advisory for HP Secure OS Software for Linux Release 1.0 instructing users to install the packages listed under Red Hat Linux 7.1 i386 in the attached Red Hat advisory (RHSA-2002:096).
FreeBSD has released upgrades. Users are advised to upgrade their Ports
collection and reinstall the affected port.
Fixes are available:
Info-ZIP UnZip 5.42
Solution:
Gentoo Linux has released an advisory. It is highly suggested that users who have installed app-arch/unzip-5.42-r1 and earlier update their systems by issuing the following commands:
emerge rsync
emerge unzip
emerge clean
HP has released an advisory for HP Secure OS Software for Linux Release 1.0 instructing users to install the packages listed under Red Hat Linux 7.1 i386 in the attached Red Hat advisory (RHSA-2002:096).
FreeBSD has released upgrades. Users are advised to upgrade their Ports
collection and reinstall the affected port.
Fixes are available:
Info-ZIP UnZip 5.42
-
Conectiva unzip-5.50-1U60_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/unzip-5.50-1U60_1cl.i386. rpm -
Conectiva unzip-5.50-1U70_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/unzip-5.50-1U70_1cl.i386. rpm -
Conectiva unzip-5.50-1U80_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/unzip-5.50-1U80_1cl.i386.rp m -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Corporate Server 1.0.1
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Mandrake Linux 7.1
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Mandrake Linux 7.2
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Mandrake Linux 8.0
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Mandrake Linux 8.1
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.i586.rpm
Single Network Firewall 7.2
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.ia64.rpm
Mandrake Linux 8.1/ia64
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.ppc.rpm
Mandrake Linux 8.0/ppc
http://www.mandrakesecure.net/en/ftp.php -
MandrakeSoft unzip-5.50-2.1mdk.ppc.rpm
Mandrake Linux 8.2/ppc
http://www.mandrakesecure.net/en/ftp.php -
Red Hat unzip-5.50-1.62.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/unzip-5.50-1.62.alpha.rpm -
Red Hat unzip-5.50-1.62.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/unzip-5.50-1.62.i386.rpm -
Red Hat unzip-5.50-1.62.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/unzip-5.50-1.62.sparc.rpm -
Red Hat unzip-5.50-2.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/unzip-5.50-2.alpha.rpm -
Red Hat unzip-5.50-2.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/unzip-5.50-2.alpha.rpm -
Red Hat unzip-5.50-2.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/unzip-5.50-2.i386.rpm -
Red Hat unzip-5.50-2.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/unzip-5.50-2.i386.rpm -
Red Hat unzip-5.50-2.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/unzip-5.50-2.i386.rpm -
Red Hat unzip-5.50-2.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/unzip-5.50-2.ia64.rpm -
Red Hat unzip-5.50-2.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/unzip-5.50-2.ia64.rpm -
Sun unzip-5.50-2.i386.rpm
http://sunsolve.sun.com/patches/linux/security.html -
Sun Qube3-All-Security-4.0.1-16170.pkg
http://sunsolve.sun.com/patches/cobalt/ -
Sun RaQ3-All-Security-5.0.1-16170.pkg
http://sunsolve.sun.com/patches/cobalt/ -
Sun RaQ4-All-Security-2.0.2-16170.pkg
http://sunsolve.sun.com/patches/cobalt/ -
Sun RaQ550-All-Security-0.0.1-16170.pkg
http://sunsolve.sun.com/patches/cobalt/ -
Sun RaQXTR-All-Security-1.0.1-16170.pkg
http://sunsolve.sun.com/patches/cobalt/
References
Info-ZIP UnZip Hostile Destination Path Vulnerability
References:
References:
- 47800 (Sun Microsystems)
- SECURITY.NNOV: directory traversal and path globing in multiple archivers (3APA3A <[email protected]>)