PT-2018-17623 · None+2 · Zziplib+2

Probefuzzer

·

Published

2018-02-02

·

Updated

2024-06-15

·

CVE-2018-6542

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ZZIPlib version 0.13.67
Description The issue is caused by a bus error when handling a disk64 trailer seek value due to the loading of a misaligned address in the zzip disk findfirst function of zzip/mmapped.c.
Recommendations For ZZIPlib version 0.13.67, consider avoiding the use of the zzip disk findfirst function until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-6542
MGASA-2019-0093
OPENSUSE-SU-2018_1564-1
OPENSUSE-SU-2024:11546-1
SUSE-SU-2018:1507-1
SUSE-SU-2018_1507-1

Affected Products

Debian
Suse
Zziplib