unzip - De-archiver for .zip files

Property Value
Distribution Debian 7 (Wheezy)
Repository Debian Main i386
Package name unzip
Package version 6.0
Package release 8+deb7u5
Package architecture i386
Package type deb
Installed size 332 B
Download size 182.40 KB
Official Mirror ftp.br.debian.org
InfoZIP's unzip program. With the exception of multi-volume archives
(ie, .ZIP files that are split across several disks using PKZIP's /& option),
this can handle any file produced either by PKZIP, or the corresponding
InfoZIP zip program.
This version supports encryption.


Package Version Architecture Repository
unzip_6.0-8+deb7u6_amd64.deb 6.0 amd64 Debian Security Updates Main
unzip_6.0-8+deb7u6_i386.deb 6.0 i386 Debian Security Updates Main
unzip_6.0-8+deb7u5_amd64.deb 6.0 amd64 Debian Main
unzip


Name Value
libbz2-1.0 -
libc6 >= 2.4


Name Value
unzip-crypt << 5.41


Name Value
unzip-crypt << 5.41


Type URL
Binary Package unzip_6.0-8+deb7u5_i386.deb
Source Package unzip

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install unzip deb package:
    # sudo apt-get install unzip




2015-11-09 - Salvatore Bonaccorso <carnil@debian.org>
unzip (6.0-8+deb7u5) wheezy-security; urgency=high
* Non-maintainer upload by the Security Team.
* Update 16-fix-integer-underflow-csiz-decrypted patch.
Fix regression in handling 0-byte files. (Closes: #804595)
2015-10-22 - Laszlo Boszormenyi (GCS) <gcs@debian.org>
unzip (6.0-8+deb7u4) wheezy-security; urgency=high
* Non-maintainer upload by the Security Team.
* Fix infinite loop when extracting password-protected archive.
This is CVE-2015-7697. Closes: #802160.
* Fix heap overflow when extracting password-protected archive.
This is CVE-2015-7696. Closes: #802162.
* Fix additional unsigned overflow on invalid input.
2015-06-21 - Santiago Vila <sanvila@debian.org>
unzip (6.0-8+deb7u3) wheezy; urgency=medium
* Apply the following patches from jessie:
- Fixed bug "unzip thinks some files are symlinks". Closes: #717029.
Reported by Jeff King. Patch by Andreas Schwab.
- Increase size of cfactorstr array in list.c to avoid a buffer
overflow problem. Closes: #741384.
- Fix zipinfo crash where a value <= 25.5 was printed in a buffer
having room only for values < 10.0. Closes: #744212.
2015-02-01 - Santiago Vila <sanvila@debian.org>
unzip (6.0-8+deb7u2) wheezy-security; urgency=high
* Security upload.
* CVE-2014-9636: Fix heap overflow. Ensure that compressed
and uncompressed block sizes match when using STORED method
in extract.c. Closes: #776589.
* CVE-2014-8139: Update patch. The old one was not right
and had regressions with executable jar files. Closes: #775640
2014-12-26 - Salvatore Bonaccorso <carnil@debian.org>
unzip (6.0-8+deb7u1) wheezy-security; urgency=high
* Non-maintainer upload by the Security Team.
* Apply upstream fix for three security bugs.
CVE-2014-8139: CRC32 verification heap-based overflow
CVE-2014-8140: out-of-bounds write issue in test_compr_eb()
CVE-2014-8141: out-of-bounds read issues in getZip64Data()
(Closes: #773722)
2012-11-28 - Santiago Vila <sanvila@debian.org>
unzip (6.0-8) unstable; urgency=low
* Made unzip -X to actually restore uid/gid information.
Closes: #689212. Thanks to Axel Scheepers for the report.
* Disabled memcpy, as it is being used on overlapping buffers,
leading to data corruption. Closes: #694601.
Thanks to M Joonas Pihlaja for the report.
2012-06-30 - Santiago Vila <sanvila@debian.org>
unzip (6.0-7) unstable; urgency=low
* Added Multi-Arch: foreign. Closes: #678812.
2012-04-01 - Santiago Vila <sanvila@debian.org>
unzip (6.0-6) unstable; urgency=low
* Added hardening flags. Closes: #656268.
2011-07-01 - Santiago Vila <sanvila@debian.org>
unzip (6.0-5) unstable; urgency=low
* Handle the PKWare verification bit of internal attributes.
Patch taken from 6.10 beta. Thanks to sms. Closes: #630078.
2010-02-21 - Santiago Vila <sanvila@debian.org>
unzip (6.0-4) unstable; urgency=low
* Added homepage field to control file.
* Switch to 3.0 (quilt) source format.
* Support cross-build.

