CVE Vulnerabilities

CVE-2020-18770

Published: Aug 22, 2023 | Modified: Jul 10, 2025
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
5.5 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

An issue was discovered in function zzip_disk_entry_to_file_header in mmapped.c in zziplib 0.13.69, which will lead to a denial-of-service.

Affected Software

NameVendorStart VersionEnd Version
ZziplibGdraheim0.13.69 (including)0.13.69 (including)
Red Hat Enterprise Linux 8RedHatzziplib-0:0.13.68-13.el8_10*
Red Hat Enterprise Linux 9RedHatzziplib-0:0.13.71-11.el9_4*
ZziplibUbuntubionic*
ZziplibUbuntufocal*
ZziplibUbuntulunar*
ZziplibUbuntumantic*
ZziplibUbuntuoracular*
ZziplibUbuntuplucky*
ZziplibUbuntutrusty*
ZziplibUbuntuxenial*

References