Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1056

Опубликовано: 27 июл. 2018
Источник: debian
EPSS Низкий

Описание

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
advancecompfixed2.1-1package

Примечания

  • https://sourceforge.net/p/advancemame/bugs/259/

  • https://github.com/amadvance/advancecomp/commit/7deeafc02b29cc51d51079e66f4f43f986ff9cc5

EPSS

Процентиль: 61%
0.00417
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

CVSS3: 3.3
redhat
около 8 лет назад

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

CVSS3: 7.8
nvd
больше 7 лет назад

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

CVSS3: 7.8
github
больше 3 лет назад

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

EPSS

Процентиль: 61%
0.00417
Низкий