VYPR
Medium severity6.5OSV Advisory· Published Feb 2, 2018· Updated Jun 17, 2026

CVE-2018-6541

CVE-2018-6541

Description

In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address (when handling disk64_trailer local entries) in __zzip_fetch_disk_trailer (zzip/zip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Gdraheim/ZziplibOSV2 versions
    v0.13.36, v0.13.48, v0.13.50, …+ 1 more
    • (no CPE)range: v0.13.36, v0.13.48, v0.13.50, …
    • cpe:2.3:a:gdraheim:zziplib:0.13.67:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*+ 3 more
    • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
  • Zziplib/Zziplibllm-fuzzy
    Range: =0.13.67

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.