Description
Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile().
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3030-1 | zipios++ security update |
EUVD |
EUVD-2019-4926 | Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service. This is related to zipheadio.h:readUint32() and zipfile.cpp:Zipfile::Zipfile(). |
Ubuntu USN |
USN-4055-1 | flightcrew vulnerabilities |
Ubuntu USN |
USN-4057-1 | Zipios vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:49:24.982Z
Reserved: 2019-07-09T00:00:00.000Z
Link: CVE-2019-13453
No data.
Status : Modified
Published: 2019-07-17T15:15:10.673
Modified: 2024-11-21T04:24:56.063
Link: CVE-2019-13453
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN