CVE-2017-15364: Ccsv Project Ccsv

Medium severity, CVSS 5.5. EPSS: 1.4% chance of exploitation in the next 30 days.

The foreach function in ext/ccsv.c in Ccsv 1.1.0 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact via a crafted file. NOTE: This has been disputed and it is argued that this is not present in version 1.1.0.

Affected products

Published 2017-10-15. Last modified 2026-06-17.