Vendorsgdraheimzziplib0.13.69
Vulnerabilities

gdraheim (Guido U. Draheim) ZZIPlib 0.13.69

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2018-17828
Directory traversal vulnerability in ZZIPlib 0.13.69 allows attackers to overwrite arbitrary files via a .. (dot dot) in a zip file, because of the function unzzip_cat in the bins/unzzipcat-mem.c file.
Published 2018-10-01 · Modified
5.8EPSS 0.015
CVE-2020-18770
An issue was discovered in function zzip_disk_entry_to_file_header in mmapped.c in zziplib 0.13.69, which will lead to a denial-of-service.
Published 2023-08-22 · Modified
5.5EPSS 0.003
CVE-2020-18442
Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the return value "zzip_file_read" in the function "unzzip_cat_file".
Published 2021-06-18 · Modified
3.3EPSS 0.007