CVE-2018-16548

Name
CVE-2018-16548
Description
An issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c, which will lead to a denial of service attack.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://github.com/gdraheim/zziplib/issues/58
REDHAT https://access.redhat.com/errata/RHSA-2019:2196
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00065.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00066.html
MLIST https://lists.debian.org/debian-lts-announce/2020/06/msg00029.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:zziplib_project:zziplib:*:*:*:*:*:*:*:* zziplib >= None <= 0.13.69

Vulnerable and fixed packages

Source package Branch Version Maintainer Status