4.3
CVSSv2

CVE-2018-6542

Published: 02/02/2018 Updated: 03/10/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

In ZZIPlib 0.13.67, there is a bus error (when handling a disk64_trailer seek value) caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmapped.c.

Vulnerable Product Search on Vulmon Subscribe to Product

zziplib project zziplib 0.13.67

Vendor Advisories

An unaligned memory access bug was found in the way ZZIPlib handled ZIP files This flaw could potentially be used to crash the application using ZZIPlib by tricking the application into processing specially crafted ZIP files ...
In ZZIPlib 01367, there is a bus error (when handling a disk64_trailer seek value) caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmappedc ...