Buffer Overflow Vulnerability in zlib-ng Minizip-ng Affects Multiple Applications
CVE-2023-48106
8.8HIGH
What is CVE-2023-48106?
A buffer overflow vulnerability has been identified in zlib-ng's minizip-ng version 4.0.2. This security flaw allows an attacker to execute arbitrary code by exploiting a crafted file processed by the mz_path_resolve function located in the mz_os.c file. Applications that utilize affected versions of minizip-ng may be at risk if they process untrusted input, potentially leading to severe security implications.
