Show filters
42 Total Results
Displaying 21-30 of 42
Sort by:
Attacker Value
Unknown

CVE-2018-6540

Disclosure Date: February 02, 2018 (last updated November 26, 2024)
In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmapped.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.
0
Attacker Value
Unknown

CVE-2018-6484

Disclosure Date: February 01, 2018 (last updated November 26, 2024)
In ZZIPlib 0.13.67, there is a memory alignment error and bus error in the __zzip_fetch_disk_trailer function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.
0
Attacker Value
Unknown

CVE-2018-6381

Disclosure Date: January 29, 2018 (last updated November 26, 2024)
In ZZIPlib 0.13.67, 0.13.66, 0.13.65, 0.13.64, 0.13.63, 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57 and 0.13.56 there is a segmentation fault caused by invalid memory access in the zzip_disk_fread function (zzip/mmapped.c) because the size variable is not validated against the amount of file->stored data.
0
Attacker Value
Unknown

CVE-2017-13707

Disclosure Date: August 27, 2017 (last updated November 26, 2024)
Privilege escalation in Replibit Backup Manager earlier than version 2017.08.04 allows attackers to gain root privileges via sudo command execution. The vi program can be accessed through sudo, in order to navigate the filesystem and modify a critical file such as /etc/passwd.
Attacker Value
Unknown

CVE-2017-5974

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.
Attacker Value
Unknown

CVE-2017-5975

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.
Attacker Value
Unknown

CVE-2017-5977

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted ZIP file.
0
Attacker Value
Unknown

CVE-2017-5979

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
The prescan_entry function in fseeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file.
0
Attacker Value
Unknown

CVE-2017-5978

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ZIP file.
0
Attacker Value
Unknown

CVE-2017-5976

Disclosure Date: March 01, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.