Critical severity9.8OSV Advisory· Published Feb 27, 2018· Updated Jun 17, 2026
CVE-2018-7548
CVE-2018-7548
Description
In subst.c in zsh through 5.4.2, there is a NULL pointer dereference when using ${(PA)...} on an empty array result.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- sourceforge.net/p/zsh/code/ci/110b13e1090bc31ac1352b28adc2d02b6d25a102nvdPatchThird Party Advisory
- security.gentoo.org/glsa/201805-10nvdThird Party Advisory
- usn.ubuntu.com/3593-1/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.