CVE-2017-15364 describes a double free vulnerability in the foreach function of Ccsv 1.1.0 (ext/ccsv.c), which can lead to a denial of service or potentially other unspecified impacts through a crafted file. This vulnerability has a CVSS v3.0 score of 5.5 (Medium), indicating a local attack vector, low attack complexity, and high impact on availability, requiring user interaction. While the vulnerability's presence in version 1.1.0 has been disputed, there is currently no public exploit intelligence, such as Metasploit or ExploitDB modules, and it is not listed in CISA's KEV catalog. Furthermore, there is no community discussion or media coverage surrounding this CVE, suggesting a low level of public awareness and exploitation activity.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.1.0CPE matchmatch criteria | cpe:2.3:a:ccsv_project:ccsv:1.1.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.