Loading
In subst.c in zsh through 5.4.2, there is a NULL pointer dereference when using ${(PA)...} on an empty array result.
Use CWE-476, Zsh vendor hub and Zsh product page to widen CVE-2018-7548 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-13259, CVE-2018-0502 and CVE-2017-18206 for nearby disclosures in the same product family.