Red Hat Bugzilla – Bug 1543333
CVE-2018-1000034 unzip: Invalid access in the LZMA compression algorithm
Last modified: 2018-02-08 04:42:47 EST
Multiple invalid access attempts were found in LZMA compression algorithm in szip/LzmaDec.c. External References: https://www.sec-consult.com/en/blog/advisories/multiple-vulnerabilities-in-infozip-unzip/index.html
Acknowledgments: Name: R. Freingruber (SEC Consult Vulnerability Lab)
Statement: This issue did not affect the versions of unzip as shipped with Red Hat Enterprise Linux 5, 6 and 7 as they did not contain vulnerable code.