CVE-2004-1010

Publication date 1 March 2005

Last updated 17 July 2025


Ubuntu priority

Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.

Status

Package Ubuntu Release Status
zip 7.04 feisty
Fixed 2.31-3
6.10 edgy
Fixed 2.31-3
6.06 LTS dapper
Fixed 2.31-3

References

Related Ubuntu Security Notices (USN)

    • USN-18-1
    • zip vulnerability
    • 6 November 2004

Other references