Описание
Heap Buffer Overflow vulnerability in zziplib v0.13.77 allows attackers to cause a denial of service via the __zzip_parse_root_directory() function at /zzip/zip.c.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| zziplib | fixed | 0.13.78+dfsg.1-0.1 | package | |
| zziplib | ignored | bookworm | package | |
| zziplib | no-dsa | bullseye | package | |
| zziplib | postponed | buster | package |
Примечания
https://github.com/gdraheim/zziplib/issues/164
https://github.com/gdraheim/zziplib/pull/169
No exact fixing commits known, but upstream concludes as fixed in v0.13.78
Связанные уязвимости
Heap Buffer Overflow vulnerability in zziplib v0.13.77 allows attackers to cause a denial of service via the __zzip_parse_root_directory() function at /zzip/zip.c.
Heap Buffer Overflow vulnerability in zziplib v0.13.77 allows attackers to cause a denial of service via the __zzip_parse_root_directory() function at /zzip/zip.c.
Heap Buffer Overflow vulnerability in zziplib v0.13.77 allows attackers to cause a denial of service via the __zzip_parse_root_directory() function at /zzip/zip.c.
Heap Buffer Overflow vulnerability in zziplib v0.13.77 allows attackers to cause a denial of service via the __zzip_parse_root_directory() function at /zzip/zip.c.