ISOMAN

CVE

CVE-2018-1056

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=889270
  2. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1056
  3. https://lists.debian.org/debian-lts-announce/2018/02/msg00016.html
  4. https://lists.debian.org/debian-lts-announce/2019/03/msg00004.html
  5. https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html
  6. https://sourceforge.net/p/advancemame/bugs/259/
  7. https://usn.ubuntu.com/3570-1/
  8. https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=889270
  9. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1056
  10. https://lists.debian.org/debian-lts-announce/2018/02/msg00016.html
  11. https://lists.debian.org/debian-lts-announce/2019/03/msg00004.html
  12. https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html
  13. https://sourceforge.net/p/advancemame/bugs/259/
  14. https://usn.ubuntu.com/3570-1/