First published: Fri Feb 02 2018(Updated: )
In ZZIPlib 0.13.67, there is a bus error (when handling a disk64_trailer seek value) caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmapped.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
zziplib | =0.13.67 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6542 is classified as a moderate severity vulnerability.
CVE-2018-6542 affects ZZIPlib 0.13.67 by causing a bus error due to the handling of a misaligned address.
To fix CVE-2018-6542, you should upgrade to a version of ZZIPlib that is later than 0.13.67.
The vulnerable function in ZZIPlib as identified by CVE-2018-6542 is zzip_disk_findfirst.
CVE-2018-6542 is specifically identified in version 0.13.67 of ZZIPlib and may not affect earlier versions.