Описание
In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter can both remain equal to zero.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:miniz_project:miniz:2.0.7:*:*:*:*:*:*:*
EPSS
Процентиль: 62%
0.00433
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-835
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter can both remain equal to zero.
EPSS
Процентиль: 62%
0.00433
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-835