Wind River Support Network

HomeDefectsLIN1021-7096
Fixed

LIN1021-7096 : Security Advisory - zlib - CVE-2014-9485

Created: Jan 18, 2024    Updated: May 25, 2025
Resolved Date: May 21, 2025
Found In Version: 10.21.20.1
Fix Version: 10.21.20.25
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

Directory traversal vulnerability in the do_extract_currentfile function in miniunz.c in miniunzip in minizip before 1.1-5 might allow remote attackers to write to arbitrary files via a crafted entry in a ZIP archive.
Live chat
Online