GNU Libextractor before 1.7 has a stack-based buffer overflow in ecreadfile_func (unzip.c).
{ "urgency": "not yet assigned" }