Known Vulnerabilities for products from Libzip
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Libzip".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-17582 json | A use-after-free in the _zip_dirent_read function of zip_dirent.c in libzip 1.2.0 allows attackers to have an unspecified imp... | 9.8 - CRITICAL | 2021-02-09 | 2021-02-16 |
| CVE-2017-14107 json | The _zip_read_eocd64 function in zip_open.c in libzip before 1.3.0 mishandles EOCD records, which allows remote attackers to ... | 6.5 - MEDIUM | 2017-09-01 | 2022-04-06 |
| CVE-2017-12858 json | Double free vulnerability in the _zip_dirent_read function in zip_dirent.c in libzip allows attackers to have unspecified imp... | 9.8 - CRITICAL | 2017-08-23 | 2022-05-25 |
Known software with vulnerabilities from Libzip
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Libzip | Libzip | 0.10. |