rzip: heap-based buffer overflow in read_buf (stream.c)

Description: rzip is a compression program for large files. A crafted archive causes an heap overflow write. The complete ASan output: # rzip -k -f -d $FILE Read of length -1325400064 failed – Bad address ================================================================= ==5655==ERROR: AddressSanitizer: heap-buffer-overflow on … Continue reading rzip: heap-based buffer overflow in read_buf (stream.c)