NanaZip
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 20 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 19, 2026 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →NanaZip: Heap out-of-bounds read in NanaZip SquashFS LZ4 decompressor via unchecked negative return value
NanaZip: Unbounded memory allocation (DoS) in NanaZip UFS parser via unvalidated fs_bsize/fs_fsize superblock fields
NanaZip: NULL pointer dereference in Extract() of all seven NanaZip custom archive handlers when extracting/testing the whole archive
NanaZip: Unbounded memory allocation (DoS) in NanaZip WebAssembly parser via attacker-controlled section/name length fields
NanaZip: Heap out-of-bounds read in NanaZip AVB hashtree descriptor parser via 32-bit unsigned integer overflow
NanaZip: Heap buffer-overflow read in NanaZip LVM metadata CRC check
NanaZip: Heap out-of-bounds read in NanaZip AVB property descriptor parser via unsigned integer underflow
NanaZip: Heap out-of-bounds write in NanaZip UFS directory parser
NanaZip: Uncontrolled recursion in NanaZip UFS directory traversal causes stack exhaustion
NanaZip: Unbounded resource consumption in NanaZip littlefs parser via attacker-controlled BlockCount
Monitor NanaZip in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.