The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Apache
Subscribe
|
Commons Compress
Subscribe
|
|
Fedoraproject
Subscribe
|
Fedora
Subscribe
|
|
Oracle
Subscribe
|
Banking Payments
Subscribe
Banking Platform
Subscribe
Communications Element Manager
Subscribe
Communications Ip Service Activator
Subscribe
Communications Session Report Manager
Subscribe
Communications Session Route Manager
Subscribe
Customer Management And Segmentation Foundation
Subscribe
Essbase
Subscribe
Flexcube Investor Servicing
Subscribe
Flexcube Private Banking
Subscribe
Hyperion Infrastructure Technology
Subscribe
Jdeveloper
Subscribe
Peoplesoft Enterprise Pt Peopletools
Subscribe
Primavera Gateway
Subscribe
Retail Integration Bus
Subscribe
Retail Xstore Point Of Service
Subscribe
Webcenter Portal
Subscribe
|
|
Redhat
Subscribe
|
Jboss Fuse
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0685 | The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress. |
Github GHSA |
GHSA-53x6-4x5p-rrvv | Denial of Service in Apache Commons Compress |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-04T23:17:39.992Z
Reserved: 2019-05-28T00:00:00
Link: CVE-2019-12402
No data.
Status : Modified
Published: 2019-08-30T09:15:17.910
Modified: 2024-11-21T04:22:45.983
Link: CVE-2019-12402
OpenCVE Enrichment
No data.
EUVD
Github GHSA