CVE-2018-6869

Source
Severity Medium
Remote Yes
Type Denial of service
Description
In ZZIPlib 0.13.68, there is an uncontrolled memory allocation and a crash in the __zzip_parse_root_directory function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.
Group Package Affected Fixed Severity Status Ticket
AVG-612 zziplib 0.13.67-1 Medium Vulnerable
References
https://github.com/gdraheim/zziplib/issues/22