Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-16548

Опубликовано: 05 сент. 2018
Источник: debian
EPSS Низкий

Описание

An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zziplibfixed0.13.62-3.2package
zziplibfixed0.13.62-3.2~deb9u1stretchpackage

Примечания

  • https://github.com/gdraheim/zziplib/issues/58

  • https://github.com/gdraheim/zziplib/commit/9411bde3e4a70a81ff3ffd256b71927b2d90dcbb

  • https://github.com/gdraheim/zziplib/commit/d2e5d5c53212e54a97ad64b793a4389193fec687

  • https://github.com/gdraheim/zziplib/commit/0e1dadb05c1473b9df2d7b8f298dab801778ef99

EPSS

Процентиль: 65%
0.00497
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 7 лет назад

An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.

CVSS3: 4
redhat
почти 7 лет назад

An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.

CVSS3: 6.5
nvd
почти 7 лет назад

An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.

CVSS3: 6.5
msrc
больше 3 лет назад

Описание отсутствует

suse-cvrf
почти 6 лет назад

Security update for zziplib

EPSS

Процентиль: 65%
0.00497
Низкий