Логотип exploitDog
bind:CVE-2022-23596
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-23596

Количество 3

Количество 3

redhat логотип

CVE-2022-23596

около 4 лет назад

Junrar is an open source java RAR archive library. In affected versions A carefully crafted RAR archive can trigger an infinite loop while extracting said archive. The impact depends solely on how the application uses the library, and whether files can be provided by malignant users. The problem is patched in 7.4.1. There are no known workarounds and users are advised to upgrade as soon as possible.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2022-23596

около 4 лет назад

Junrar is an open source java RAR archive library. In affected versions A carefully crafted RAR archive can trigger an infinite loop while extracting said archive. The impact depends solely on how the application uses the library, and whether files can be provided by malignant users. The problem is patched in 7.4.1. There are no known workarounds and users are advised to upgrade as soon as possible.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-m6cj-93v6-cvr5

около 4 лет назад

Junrar vulnerable to infinite loop via extracting carefully crafted RAR archive

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2022-23596

Junrar is an open source java RAR archive library. In affected versions A carefully crafted RAR archive can trigger an infinite loop while extracting said archive. The impact depends solely on how the application uses the library, and whether files can be provided by malignant users. The problem is patched in 7.4.1. There are no known workarounds and users are advised to upgrade as soon as possible.

CVSS3: 7.5
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2022-23596

Junrar is an open source java RAR archive library. In affected versions A carefully crafted RAR archive can trigger an infinite loop while extracting said archive. The impact depends solely on how the application uses the library, and whether files can be provided by malignant users. The problem is patched in 7.4.1. There are no known workarounds and users are advised to upgrade as soon as possible.

CVSS3: 7.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-m6cj-93v6-cvr5

Junrar vulnerable to infinite loop via extracting carefully crafted RAR archive

CVSS3: 7.5
0%
Низкий
около 4 лет назад

Уязвимостей на страницу