Simdcomp is a specialized data-compression library with a narrow product scope that plays a role in software supply chains where compression performance and SIMD optimization are priorities. The durable signal from its disclosure history centers on out-of-bounds read conditions, reflecting the low-level memory-access patterns inherent to vectorized compression implementations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simdcomp Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17854MEDIUM SIMDComp before 0.1.1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) because it can read (and then discard) extra bytes. N | Oct 1, 2018 | 6.5 | 22 | NO | NO |
CVE-2018-17427MEDIUM SIMDComp before 0.1.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) because it can read (and then discard) extra bytes. | Oct 1, 2018 | 6.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simdcomp Project.
Media articles that mention a CVE ID that affects a product developed by Simdcomp Project — matched by CVE ID, not by vendor name.