CVE-2018-12913: Miniz Project Miniz
High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.
In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter can both remain equal to zero.
Affected products
- Miniz Project Miniz: version 2.0.7 only
Published 2018-06-27. Last modified 2026-06-17.