CVE-2021-27345

Name
CVE-2021-27345
Description
A null pointer dereference was discovered in ucompthread in stream.c in Irzip 0.631 which allows attackers to cause a denial of service (DOS) via a crafted compressed file.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://github.com/ckolivas/lrzip/issues/164
MLIST https://lists.debian.org/debian-lts-announce/2022/04/msg00012.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:irzip_project:irzip:0.631:*:*:*:*:*:*:* irzip == None == 0.631
cpe:2.3:a:long_range_zip_project:long_range_zip:0.631:*:*:*:*:*:*:* long_range_zip == None == 0.631

Vulnerable and fixed packages

Source package Branch Version Maintainer Status