CVE-2017-15364: Ccsv Project Ccsv
Medium severity, CVSS 5.5. EPSS: 1.4% chance of exploitation in the next 30 days.
The foreach function in ext/ccsv.c in Ccsv 1.1.0 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact via a crafted file. NOTE: This has been disputed and it is argued that this is not present in version 1.1.0.
Affected products
- Ccsv Project Ccsv: version 1.1.0 only
Published 2017-10-15. Last modified 2026-06-17.