Critical severity9.8NVD Advisory· Published Apr 13, 2018· Updated Jun 17, 2026
CVE-2017-0359
CVE-2017-0359
Description
diffoscope before 77 writes to arbitrary locations on disk based on the contents of an untrusted archive.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
diffoscopePyPI | < 76 | 76 |
Affected products
5- ghsa-coords2 versions
< 76+ 1 more
- (no CPE)range: < 76
- (no CPE)range: < 183-1.2
- Debian/diffoscopev5Range: before 77
Patches
Vulnerability mechanics
References
8- bugs.debian.org/854723nvdExploitPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-8p5c-f328-9fvvghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2017-0359ghsaADVISORY
- security-tracker.debian.org/tracker/CVE-2017-0359nvdIssue TrackingThird Party AdvisoryWEB
- bugs.debian.org/cgi-bin/bugreport.cgighsaWEB
- github.com/anthraxx/diffoscope/commit/632a40828a54b399787c25e7fa243f732aef7e05ghsaWEB
- github.com/anthraxx/diffoscope/commit/f379d1f611dbd5d361e12b732e07c8aee45ff226ghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/diffoscope/PYSEC-2018-83.yamlghsaWEB
News mentions
0No linked articles in our index yet.