Security Advisories (4)
Archive::Unzip::Burst from 0.01 through 0.09 for Perl contains a bundled InfoZip library that is affected by several vulnerabilities. The bundled library is affected by CVE-2014-8139, CVE-2014-8140 and CVE-2014-8141.
Heap-based buffer overflow in the getZip64Data function in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Heap-based buffer overflow in the test_compr_eb function in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip command.
Changes for version 0.09 - 2018-03-16
- . in @INC test fail fix
Modules
Module Install Instructions
To install Archive::Unzip::Burst, copy and paste the appropriate command in to your terminal.
cpanm Archive::Unzip::Burst
perl -MCPAN -e shell
install Archive::Unzip::Burst
For more information on module installation, please visit the detailed CPAN module installation guide.