CVE-2018-1000033 is an out-of-bounds read vulnerability in Info-Zip UnZip version 6.10c22. This critical vulnerability (CVSS 9.1) allows an unauthenticated attacker to remotely trigger a denial of service and potentially read sensitive memory. While there is no known active exploitation or publicly available exploit code, the vulnerability has garnered significant community attention with over 10 mentions, indicating a high level of interest. Despite this, it is not listed in CISA's KEV catalog and has no media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.10c22CPE matchmatch criteria | cpe:2.3:a:info-zip:unzip:6.10c22:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.