Red Hat Bugzilla – Bug 1422514
CVE-2017-5979 zziplib: NULL pointer dereference in prescan_entry (fseeko.c)
Last modified: 2017-02-15 07:57:34 EST
A NULL pointer dereference flaw was discovered in zziplib, a lightweight library for extracting data from ZIP files. An application using zziplib to process could crash when processing a malformed ZIP archive. External References: http://blogs.gentoo.org/ago/2017/02/09/zziplib-null-pointer-dereference-in-prescan_entry-fseeko-c/
Created zziplib tracking bugs for this issue: Affects: fedora-all [bug 1422517]