Описание
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial of service (process hang) can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.
Ссылки
- Patch
- ExploitIssue TrackingPatchThird Party Advisory
- Third Party Advisory
- Patch
- ExploitIssue TrackingPatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.3.0 (исключая)
cpe:2.3:a:bzip3_project:bzip3:*:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:*
EPSS
Процентиль: 35%
0.00145
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 6.5
ubuntu
почти 3 года назад
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial of service (process hang) can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.
CVSS3: 6.5
debian
почти 3 года назад
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial ...
CVSS3: 6.5
github
почти 3 года назад
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A denial of service (process hang) can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.
EPSS
Процентиль: 35%
0.00145
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-noinfo