AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2022-0529.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSMEDIUM / 5.5CVSS 3.1 · nvd@nist.gov
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSModifiedModified Oct 08, 2026

Disclosure summary

A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.

Source-reported weakness categories

CWE-787

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

NIST National Vulnerability Database · NVD-CVE-2022-0529

Open original source · Updated Oct 08, 2026

Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.

VendorProduct / associationVersion / bounds
unzip_projectunzip6.0
redhatenterprise_linux8.0
fedoraprojectfedora35
debiandebian_linux10.0
debiandebian_linux11.0

Original records & references

PUBLISHED 2022-02-09T18:15:16-05:00
MODIFIED 2026-10-08T17:17:43-04:00
INGESTED 2026-10-10T20:50:21-04:00