Denial of service vulnerability in zziplib via a crafted ZIP file - CVE-2017-5975ID: oval:org.secpod.oval:def:39291 | Date: (C)2017-03-14 (M)2023-12-20 |
Class: VULNERABILITY | Family: unix |
The host is installed with zziplib package on Ubuntu 16.04, Ubuntu 14.04, Ubuntu 16.10 or Ubuntu 12.04 and is prone to a denial of service vulnerability. A flaw is present in application, which fails to properly handle a crafted zip files. Successful exploitation could allow remote attackers to cause denial of service (crash).
Product: |
zziplib-bin |
libzzip-0-13 |
libzzip-dev |