Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g9q4-qjx4-2v7q

Опубликовано: 28 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is opened. This can lead to a denial of service when consuming a maliciously constructed ZIP archive.

archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is opened. This can lead to a denial of service when consuming a maliciously constructed ZIP archive.

EPSS

Процентиль: 6%
0.00022
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 месяцев назад

archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is opened. This can lead to a denial of service when consuming a maliciously constructed ZIP archive.

CVSS3: 7.5
redhat
около 2 месяцев назад

archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is opened. This can lead to a denial of service when consuming a maliciously constructed ZIP archive.

CVSS3: 6.5
nvd
около 2 месяцев назад

archive/zip uses a super-linear file name indexing algorithm that is invoked the first time a file in an archive is opened. This can lead to a denial of service when consuming a maliciously constructed ZIP archive.

CVSS3: 6.5
debian
около 2 месяцев назад

archive/zip uses a super-linear file name indexing algorithm that is i ...

CVSS3: 6.5
fstec
около 2 месяцев назад

Уязвимость языка программирования Golang, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 6%
0.00022
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-770