### [CVE-2019-16892](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16892)



### Description
In Rubyzip before 1.3.0, a crafted ZIP file can bypass application checks on ZIP entry sizes because data about the uncompressed size can be spoofed. This allows attackers to cause a denial of service (disk consumption).
### POC
#### Reference
- https://github.com/rubyzip/rubyzip/pull/403
#### Github
No PoCs found on GitHub currently.