CVE-2005-3317

N/A Unknown
Published: October 27, 2005 Modified: April 16, 2026
View on NVD

Description

Multiple stack-based buffer overflows in ZipGenius 5.5.1.468 and 6.0.2.1041, and other versions before 6.0.2.1050, allow remote attackers to execute arbitrary code via (1) a ZIP archive that contains a file with a long filename, which is not properly handled by (a) zipgenius.exe, (b) zg.exe, (c) zgtips.dll, and (d) contmenu.dll; (2) a long original name in a (a) UUE, (b) XXE, or (c) MIM file, which is not properly handled by zipgenius.exe; or (3) an ACE archive with a file with a long filename, which is not properly handled by unacev2.dll.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.osvdb.org/20157
Source: cve@mitre.org
http://www.osvdb.org/20158
Source: cve@mitre.org
http://www.osvdb.org/20159
Source: cve@mitre.org
http://forum.zipgenius.it/index.php?showtopic=684
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/17061
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/secunia_research/2005-54/advisory
Source: af854a3a-2127-422b-91ae-364da2661108
http://securityreason.com/securityalert/103
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1015090
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/20157
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/20158
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/20159
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/414083
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/15161
Source: af854a3a-2127-422b-91ae-364da2661108

20 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
7.2%
92th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

zipgenius