CVE-2018-17854: Simdcomp Project Simdcomp

Medium severity, CVSS 6.5. EPSS: 1.5% chance of exploitation in the next 30 days.

SIMDComp before 0.1.1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) because it can read (and then discard) extra bytes. NOTE: this issue exists because of an incomplete fix for CVE-2018-17427.

Affected products

Published 2018-10-01. Last modified 2026-06-17.