CVE-2017-5975
01.03.2017, 15:59
Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gdraheim | zziplib | 0.13.56 |
| gdraheim | zziplib | 0.13.57 |
| gdraheim | zziplib | 0.13.58 |
| gdraheim | zziplib | 0.13.59 |
| gdraheim | zziplib | 0.13.60 |
| gdraheim | zziplib | 0.13.61 |
| gdraheim | zziplib | 0.13.62 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References