{
  "modified": "2025-08-09T19:01:27Z",
  "published": "2007-03-23T00:19:00Z",
  "id": "CVE-2007-1614",
  "details": "Stack-based buffer overflow in the zzip_open_shared_io function in zzip/file.c in ZZIPlib Library before 0.13.49 allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long filename.",
  "references": [
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24586"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24708"
    },
    {
      "type": "ADVISORY",
      "url": "http://security.gentoo.org/glsa/glsa-200704-05.xml"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.mandriva.com/security/advisories?name=MDKSA-2007:093"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.vupen.com/english/advisories/2007/0998"
    },
    {
      "type": "EVIDENCE",
      "url": "http://www.securitylab.ru/forum/read.php?FID=21\u0026TID=40858\u0026MID=326187"
    },
    {
      "type": "FIX",
      "url": "http://secunia.com/advisories/24586"
    },
    {
      "type": "FIX",
      "url": "http://sourceforge.net/project/shownotes.php?group_id=6389\u0026release_id=494587"
    },
    {
      "type": "WEB",
      "url": "http://osvdb.org/33838"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/23013"
    }
  ]
}
