Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0370
Description:Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0370
BugTraq ID: 5873
http://www.securityfocus.com/bid/5873
Bugtraq: 20021002 R7-0004: Multiple Vendor Long ZIP Entry Filename Processing Issues (Google Search)
http://marc.info/?l=bugtraq&m=103428193409223&w=2
CERT/CC vulnerability note: VU#383779
http://www.kb.cert.org/vuls/id/383779
Microsoft Security Bulletin: MS02-054
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-054
http://securityreason.com/securityalert/587
http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0009.html
XForce ISS Database: win-zip-decompression-bo(10251)
http://www.iss.net/security_center/static/10251.php




© 1998-2025 E-Soft Inc. All rights reserved.