In Long Range Zip (aka lrzip) 0.631, there is an infinite loop in the runzip_fd function of runzip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-9058.json"