CVE-2020-36646

A vulnerability classified as problematic has been found in MediaArea ZenLib up to 0.4.38. This affects the function Ztring::Date_From_Seconds_1970_Local of the file Source/ZenLib/Ztring.cpp. The manipulation of the argument Value leads to unchecked return value to null pointer dereference. Upgrading to version 0.4.39 is able to address this issue. The name of the patch is 6475fcccd37c9cf17e0cfe263b5fe0e2e47a8408. It is recommended to upgrade the affected component. The identifier VDB-217629 was assigned to this vulnerability.
References
Link Resource
https://github.com/MediaArea/ZenLib/releases/tag/v0.4.39 Release Notes Third Party Advisory
https://vuldb.com/?ctiid.217629 Third Party Advisory VDB Entry
https://vuldb.com/?id.217629 Third Party Advisory VDB Entry
https://github.com/MediaArea/ZenLib/commit/6475fcccd37c9cf17e0cfe263b5fe0e2e47a8408 Patch Third Party Advisory
https://github.com/MediaArea/ZenLib/pull/119 Patch Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mediaarea:zenlib:*:*:*:*:*:*:*:*

Information

Published : 2023-01-07 12:15

Updated : 2023-01-12 12:32


NVD link : CVE-2020-36646

Mitre link : CVE-2020-36646


JSON object : View

CWE
CWE-476

NULL Pointer Dereference

Advertisement

dedicated server usa

Products Affected

mediaarea

  • zenlib