First published: Thu Jul 12 2012(Updated: )
Heap-based buffer overflow in the _zip_readcdir function in zip_open.c in libzip 0.10 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a zip archive with the number of directories set to 0, related to an "incorrect loop construct."
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nih Libzip | =0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.