GNU / Gzip
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-41992 | Global Buffer Overflow in GNU gzip | MEDIUM | 6.9 | Jun 29, 2026 |
| CVE-2026-41991 | Predictable Temporary File in GNU gzip | LOW | 2.0 | Jun 29, 2026 |
| CVE-2022-1271 | gzip: arbitrary-file-write vulnerability | HIGH | 8.8 | Aug 31, 2022 |
| CVE-2010-0001 | gzip: (64 bit) Integer underflow by decompressing LZW format files | MEDIUM | 6.8 | Jan 29, 2010 |
| CVE-2009-2624 | gzip: Missing input sanitation by decompressing dynamic Huffman code blocks | MEDIUM | 6.8 | Jan 29, 2010 |
| CVE-2005-0758 | security flaw | MEDIUM | 4.6 | May 13, 2005 |
| CVE-2005-1228 | security flaw | MEDIUM | 5.0 | Apr 22, 2005 |
| CVE-2005-0988 | security flaw | LOW | 3.7 | Apr 6, 2005 |
| CVE-2004-1349 | gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which all… | LOW | 2.1 | Jan 19, 2005 |
| CVE-2004-0970 | The (1) gzexe, (2) zdiff, and (3) znew scripts in the gzip package, as used by other packages such as ncompress, allows local users to overwrite files via a sy… | LOW | 2.1 | Oct 20, 2004 |
| CVE-2004-0603 | gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the program, which could allow remote attack… | HIGH | 10.0 | Jun 30, 2004 |
| CVE-2003-0367 | gzip: symlink attack on temporary files leads to arbitrary file overwrite | MEDIUM | 6.2 | Jun 10, 2003 |
| CVE-2001-1228 | Buffer overflows in gzip 1.3x, 1.2.4, and other versions might allow attackers to execute code via a long file name, possibly remotely if gzip is run on an FTP… | HIGH | 7.5 | Apr 12, 2002 |
Showing 1 to 13 of 13 CVEs