7.8
CVSSv2

CVE-2007-2536

Published: 09/05/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

PicoZip allows remote malicious users to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

picozip picozip 4.01

picozip picozip 4.02

Exploits

/* source: wwwsecurityfocuscom/bid/23823/info The Zoo compression algorithm is prone to a remote denial-of-service vulnerability This issue arises when applications implementing the Zoo algorithm process certain malformed archives A successful attack can exhaust system resources and trigger a denial-of-service condition This issue af ...