Medium severity5.5NVD Advisory· Published Mar 1, 2017· Updated May 13, 2026
CVE-2017-5977
CVE-2017-5977
Description
The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted ZIP file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- blogs.gentoo.org/ago/2017/02/09/zziplib-invalid-memory-read-in-zzip_mem_entry_extra_block-memdisk-c/nvdExploitThird Party Advisory
- www.openwall.com/lists/oss-security/2017/02/14/3nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/96268nvd
News mentions
0No linked articles in our index yet.