Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-0529 PoC — Info-ZIP UnZip 缓冲区错误漏洞

Source
Associated Vulnerability
Title:Info-ZIP UnZip 缓冲区错误漏洞 (CVE-2022-0529)
Description:A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Description
CVE-2022-0529 & CVE-2022-0530
Readme
### [CVE-2022-0529](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0529) and [CVE-2022-0530](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0530)
![](https://img.shields.io/static/v1?label=Product&message=unzip&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=6.0&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=SEGV&color=brighgreen)
# POC for unzip 6.0

# CVE-2022-0529 & CVE-2022-0530

https://bugzilla.redhat.com/show_bug.cgi?id=2051402


https://bugzilla.redhat.com/show_bug.cgi?id=2051395
File Snapshot

[4.0K] /data/pocs/e329cde148bd73cfbddb8bef8c7062f291a7a642 ├── [4.0K] CVE-2022-0529 │   ├── [ 91] Dockerfile-fedora │   ├── [ 662] Dockerfile-ubuntu │   ├── [ 26K] README.txt │   ├── [ 366] reproduce-fedora.sh │   ├── [ 366] reproduce-ubuntu.sh │   └── [248K] testcase ├── [4.0K] CVE-2022-0530 │   ├── [ 91] Dockerfile-fedora │   ├── [ 662] Dockerfile-ubuntu │   ├── [6.4K] README.txt │   ├── [ 366] reproduce-fedora.sh │   ├── [ 366] reproduce-ubuntu.sh │   └── [ 288] testcase ├── [ 34K] LICENSE └── [ 564] README.md 2 directories, 14 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →