mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 18:52:12 +00:00
19 lines
719 B
Markdown
19 lines
719 B
Markdown
![]() |
### [CVE-2018-18384](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-18384)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
Info-ZIP UnZip 6.0 has a buffer overflow in list.c, when a ZIP archive has a crafted relationship between the compressed-size value and the uncompressed-size value, because a buffer size is 10 and is supposed to be 12.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
No PoCs from references.
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/phonito/phonito-vulnerable-container
|
||
|
- https://github.com/ronomon/zip
|
||
|
|