When reading a specially crafted 7Z archive, the construction of the list of codecs that decompress an entry can result in an infinite loop. This could be used to mount a denial of service attack against services that use Compress' sevenz package.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2021-07-13T07:15:19
Updated: 2024-08-04T00:40:47.264Z
Reserved: 2021-06-27T00:00:00
Link: CVE-2021-35515
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-07-13T08:15:07.033
Modified: 2023-11-07T03:36:33.393
Link: CVE-2021-35515
Redhat