CVE-2017-15364

The foreach function in ext/ccsv.c in Ccsv 1.1.0 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact via a crafted file. NOTE: This has been disputed and it is argued that this is not present in version 1.1.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ccsv_project:ccsv:1.1.0:*:*:*:*:*:*:*

History

06 Jan 2025, 22:15

Type Values Removed Values Added
Summary (en) The foreach function in ext/ccsv.c in Ccsv 1.1.0 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact via a crafted file. (en) The foreach function in ext/ccsv.c in Ccsv 1.1.0 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact via a crafted file. NOTE: This has been disputed and it is argued that this is not present in version 1.1.0.
References
  • () https://github.com/evan/ccsv/commit/24e0b9b94c44a15b23475e821366239d53764dbd -
  • () https://github.com/evan/ccsv/commit/c59d960ffa6b742a0616a209442618462142e6c1#diff-e39824a4819928ff248d5e90a12d1b311db2923907171cdc0ad7058da12244d9R224 -

21 Nov 2024, 03:14

Type Values Removed Values Added
References () https://github.com/evan/ccsv/issues/15 - Third Party Advisory () https://github.com/evan/ccsv/issues/15 - Third Party Advisory

Information

Published : 2017-10-15 19:29

Updated : 2025-01-06 22:15


NVD link : CVE-2017-15364

Mitre link : CVE-2017-15364

CVE.ORG link : CVE-2017-15364


JSON object : View

Products Affected

ccsv_project

  • ccsv
CWE
CWE-415

Double Free