CVE-2018-12913: Miniz Project Miniz

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinite loop because sym2 and counter can both remain equal to zero.

Affected products

Published 2018-06-27. Last modified 2026-06-17.