Описание
Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | needs-triage | |
| esm-apps/focal | needs-triage | |
| esm-apps/jammy | needs-triage | |
| esm-apps/noble | needs-triage | |
| esm-apps/resolute | needs-triage | |
| focal | ignored | end of standard support, was needs-triage |
| jammy | needs-triage | |
| kinetic | ignored | end of life, was needs-triage |
| lunar | ignored | end of life, was needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 46%
0.00619
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
redhat
больше 3 лет назад
Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.
CVSS3: 5.9
nvd
больше 3 лет назад
Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.
CVSS3: 5.9
debian
больше 3 лет назад
Zip4j through 2.11.2, as used in Threema and other products, does not ...
EPSS
Процентиль: 46%
0.00619
Низкий
5.9 Medium
CVSS3