← Back

CVE-2002-0370

nvd nist
Published: Oct 10, 2002Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.

Affected (20)

Show all products
Stuffit Expander
1 product
Lotus Notes
1 product
Keyview Viewing Sdk
1 product
Winzip
3 products
Windows 98 Plus Pack
Windows Me
Windows Xp
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Version 6.5.2
Ibm
Up to 4.5
Version 5.0.10
Version 5.0.11
Version 5.0.1
Version 5.0.2
Version 5.0.3
Version 5.0.4
Version 5.0.5
Version 5.0.9a
Version 5.0
Version r5
Version r6
Version gold
Version 7.0
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
Microsoft
All versions
All versions
All versions

References (18)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.