Related Vulnerabilities: CVE-2018-6869  

An uncontrolled memory allocation was found in ZZIPlib before 0.13.68 that could lead to a crash in the __zzip_parse_root_directory function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.

Severity Medium

Remote Yes

Type Denial of service

Description

An uncontrolled memory allocation was found in ZZIPlib before 0.13.68 that could lead to a crash in the __zzip_parse_root_directory function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.

AVG-667 zziplib 0.13.67-1 0.13.68-1 Medium Fixed

https://github.com/gdraheim/zziplib/issues/22
https://github.com/gdraheim/zziplib/commit/0c0c9256b0903f664bca25dd8d924211f81e01d3