Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21026
HistoryAug 07, 2019 - 7:11 a.m.

Denial Of Service (DoS)

2019-08-0707:11:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

EPSS

0.003

Percentile

70.3%

zziplib is vulnerable to denial of service (DoS). The attack is possible because the function __zzip_parse_root_directory in zip.c does not handle the memory and free the memory properly, causing memory leaks.