Description
The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0685 | The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress. |
Github GHSA |
GHSA-53x6-4x5p-rrvv | Denial of Service in Apache Commons Compress |
References
History
No history.
Subscriptions
Apache
Subscribe
Commons Compress
Subscribe
Fedoraproject
Subscribe
Fedora
Subscribe
Oracle
Subscribe
Banking Payments
Subscribe
Banking Platform
Subscribe
Communications Element Manager
Subscribe
Communications Ip Service Activator
Subscribe
Communications Session Report Manager
Subscribe
Communications Session Route Manager
Subscribe
Customer Management And Segmentation Foundation
Subscribe
Essbase
Subscribe
Flexcube Investor Servicing
Subscribe
Flexcube Private Banking
Subscribe
Hyperion Infrastructure Technology
Subscribe
Jdeveloper
Subscribe
Peoplesoft Enterprise Pt Peopletools
Subscribe
Primavera Gateway
Subscribe
Retail Integration Bus
Subscribe
Retail Xstore Point Of Service
Subscribe
Webcenter Portal
Subscribe
Redhat
Subscribe
Jboss Fuse
Subscribe
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-04T23:17:39.992Z
Reserved: 2019-05-28T00:00:00.000Z
Link: CVE-2019-12402
No data.
Status : Modified
Published: 2019-08-30T09:15:17.910
Modified: 2024-11-21T04:22:45.983
Link: CVE-2019-12402
OpenCVE Enrichment
No data.
EUVD
Github GHSA