CVE-2020-25467

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
10/06/2021
Last modified:
27/04/2022

Description

A null pointer dereference was discovered lzo_decompress_buf in stream.c in Irzip 0.621 which allows an attacker to cause a denial of service (DOS) via a crafted compressed file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:long_range_zip_project:long_range_zip:0.621:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*