Описание
rardecode: DoS risk due to unrestricted RAR dictionary sizes
rardecode versions <= 2.1.1 fail to restrict the dictionary size when reading large RAR dictionary sizes, which allows an attacker to provide a specially crafted RAR file and cause Denial of Service via an Out Of Memory Crash.
Пакеты
github.com/nwaples/rardecode/v2
< 2.2.0
2.2.0
github.com/nwaples/rardecode
<= 1.1.3
Отсутствует
Связанные уязвимости
github.com/nwaples/rardecode versions <=2.1.1 fail to restrict the dictionary size when reading large RAR dictionary sizes, which allows an attacker to provide a specially crafted RAR file and cause Denial of Service via an Out Of Memory Crash.
github.com/nwaples/rardecode versions <=2.1.1 fail to restrict the dictionary size when reading large RAR dictionary sizes, which allows an attacker to provide a specially crafted RAR file and cause Denial of Service via an Out Of Memory Crash.
github.com/nwaples/rardecode versions <=2.1.1 fail to restrict the dic ...