libpspp-core.a in GNU PSPP through 2.0.1 allows attackers...
Moderate severity
Unreviewed
Published
May 11, 2025
to the GitHub Advisory Database
•
Updated Jun 12, 2025
Description
Published by the National Vulnerability Database
May 10, 2025
Published to the GitHub Advisory Database
May 11, 2025
Last updated
Jun 12, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_read_all) in zip-reader.c.
References