VYPR

Pyminizip

by Smihica

CVEs (1)

  • CVE-2023-45853CriOct 14, 2023
    risk 0.57cvss 9.8epss 0.03

    MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename, comment, or extra field. NOTE: MiniZip is not a supported part of the zlib product. NOTE: pyminizip through 0.2.6 is also vulnerable…