Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2019-17582
Disclosure Date: February 09, 2021 (last updated February 22, 2025)
A use-after-free in the _zip_dirent_read function of zip_dirent.c in libzip 1.2.0 allows attackers to have an unspecified impact by attempting to unzip a malformed ZIP archive. NOTE: the discoverer states "This use-after-free is triggered prior to the double free reported in CVE-2017-12858."
0
Attacker Value
Unknown
CVE-2017-14107
Disclosure Date: September 01, 2017 (last updated November 26, 2024)
The _zip_read_eocd64 function in zip_open.c in libzip before 1.3.0 mishandles EOCD records, which allows remote attackers to cause a denial of service (memory allocation failure in _zip_cdir_grow in zip_dirent.c) via a crafted ZIP archive.
0
Attacker Value
Unknown
CVE-2017-12858
Disclosure Date: August 23, 2017 (last updated November 26, 2024)
Double free vulnerability in the _zip_dirent_read function in zip_dirent.c in libzip allows attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-2331
Disclosure Date: March 30, 2015 (last updated October 05, 2023)
Integer overflow in the _zip_cdir_new function in zip_dirent.c in libzip 0.11.2 and earlier, as used in the ZIP extension in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a ZIP archive that contains many entries, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2012-1162
Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Heap-based buffer overflow in the _zip_readcdir function in zip_open.c in libzip 0.10 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a zip archive with the number of directories set to 0, related to an "incorrect loop construct."
0
Attacker Value
Unknown
CVE-2012-1163
Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Integer overflow in the _zip_readcdir function in zip_open.c in libzip 0.10 allows remote attackers to execute arbitrary code via the size and offset values for the central directory in a zip archive, which triggers "improper restrictions of operations within the bounds of a memory buffer" and an information leak.
0
Attacker Value
Unknown
CVE-2010-0405
Disclosure Date: September 28, 2010 (last updated October 04, 2023)
Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted compressed file.
0