CVE-2018-1056 LOW

CVE-2018-1056

Vendor Amadvance
Product advancecomp:
Weakness CWE-122
Published July 27, 2018
Last update August 5, 2024

CVSS base score

3.3/10
Attack vector Local
Attack complexity Low
Privileges required None
User interaction Required
Confidentiality None
Integrity None

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

What the vulnerability does

01Description

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

Key dates

02Disclosure timeline

July 27, 2018 CVE published
August 5, 2024 Record updated