Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37580
HistoryOct 17, 2022 - 5:30 a.m.

Denial Of Service (DoS)

2022-10-1705:30:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
unzip
vulnerability
dos
unicode strings
null pointer
zip file

0.001 Low

EPSS

Percentile

35.7%

unzip is vulnerable to denial of service. The vulnerability exists because of the improper handling of Unicode strings, allowing an attacker to crash the application through the null pointer dereference by providing a maliciously crafted zip file.