Lucene search

K
osvGoogleOSV:RLSA-2020:1653
HistoryApr 28, 2020 - 9:01 a.m.

Moderate: zziplib security update

2020-04-2809:01:25
Google
osv.dev
9

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

24.7%

The zziplib is a lightweight library to easily extract data from zip files.

Security Fix(es):

  • zziplib: directory traversal in unzzip_cat in the bins/unzzipcat-mem.c (CVE-2018-17828)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section.