CVE-2002-0370
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 43%
exploitation probability
43%top 1% of all CVEs
observed exploitation
nono source reports it
Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.
Affected products
n/a · n/aReferences
http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0009.htmlhttp://marc.info/?l=bugtraq&m=103428193409223&w=2https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-054http://securityreason.com/securityalert/587http://www.info.apple.com/usen/security/security_updates.htmlhttp://www.info-zip.org/FAQ.htmlhttp://www.iss.net/security_center/static/10251.phphttp://www.kb.cert.org/vuls/id/383779http://www.securityfocus.com/bid/5873