Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-13453

Опубликовано: 17 июл. 2019
Источник: debian

Описание

Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile().

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zipios++fixed0.1.5.9+cvs.2007.04.28-11package
zipios++fixed0.1.5.9+cvs.2007.04.28-10+deb10u1busterpackage
zipios++no-dsajessiepackage

Примечания

  • https://sourceforge.net/p/zipios/news/2019/07/version-017-cve-/

  • Patch: https://sourceforge.net/p/zipios/code-git/ci/96e26640573410709bb863b8916a8216f4c6a546/tree/infinite_loop.patch

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 6 лет назад

Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile().

CVSS3: 6.5
nvd
больше 6 лет назад

Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile().

CVSS3: 6.5
github
больше 3 лет назад

Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile().