CVE-2018-16985
13.09.2018, 14:29
In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c, related to LZ5_compress_fastSmall and MEM_read32. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
lizard_project | lizard | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration