CVE-2018-6540 log
Source |
|
Severity | Medium |
Remote | Yes |
Type | Denial of service |
Description | In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmapped.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-667 | zziplib | 0.13.67-1 | 0.13.68-1 | Medium | Fixed |
References |
---|
https://github.com/gdraheim/zziplib/issues/15 https://github.com/gdraheim/zziplib/pull/19/commits/15b8c969df962a444dfa07b3d5bd4b27dc0dbba7 |