Rzip Project maintains a specialized file-compression utility with a narrowly scoped vulnerability footprint centered on its core rzip product. The recurring signal centers on improper memory-buffer bounds handling, a weakness class characteristic of C-based compression implementations that process untrusted input streams. Current severity, exploitation activity, and CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rzip Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-8364HIGH The read_buf function in stream.c in rzip 2.1 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified o | Apr 30, 2017 | 7.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rzip Project.
Media articles that mention a CVE ID that affects a product developed by Rzip Project — matched by CVE ID, not by vendor name.