CVE-2018-5196

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
21/12/2018
Last modified:
24/08/2020

Description

Alzip 10.76.0.0 and earlier is vulnerable to a stack overflow caused by improper bounds checking. By persuading a victim to open a specially-crafted LZH archive file, a attacker could execute arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:estsoft:alzip:*:*:*:*:*:windows:*:* 10.76.0.0 (including)