PT-2017-12732 · Libzip · Libzip

Brian Carpenter

+1

·

Published

2017-08-23

·

Updated

2024-06-15

·

CVE-2017-12858

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions libzip (affected versions not specified)
Description A double free vulnerability exists in the zip dirent read function in zip dirent.c, which may allow attackers to have an unspecified impact. The vectors by which this issue can be exploited are unknown.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Double Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-12858
OPENSUSE-SU-2024:11018-1

Affected Products

Libzip