Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g9r-vxhx-9pgx

Опубликовано: 19 фев. 2024
Источник: github
Github: Прошло ревью
CVSS3: 5.9

Описание

Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Commons Compress. This issue affects Apache Commons Compress: from 1.3 through 1.25.0.

Users are recommended to upgrade to version 1.26.0 which fixes the issue.

Пакеты

Наименование

org.apache.commons:commons-compress

maven
Затронутые версииВерсия исправления

>= 1.3, < 1.26.0

1.26.0

EPSS

Процентиль: 4%
0.00018
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 2 года назад

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.3 through 1.25.0. Users are recommended to upgrade to version 1.26.0 which fixes the issue.

CVSS3: 5.5
redhat
почти 2 года назад

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.3 through 1.25.0. Users are recommended to upgrade to version 1.26.0 which fixes the issue.

CVSS3: 8.1
nvd
почти 2 года назад

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.3 through 1.25.0. Users are recommended to upgrade to version 1.26.0 which fixes the issue.

CVSS3: 5.5
msrc
6 месяцев назад

Описание отсутствует

CVSS3: 8.1
debian
почти 2 года назад

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability i ...

EPSS

Процентиль: 4%
0.00018
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835