CVE-2024-26308: Apache Commons Compress: OutOfMemoryError unpacking broken Pack200 file

CVE-2024-26308: Apache Commons Compress: OutOfMemoryError unpacking broken Pack200 file

Open Source Security [[{„value“:“

Posted by Gary D. Gregory on Feb 19

Severity: moderate

Affected versions:

– Apache Commons Compress 1.21 before 1.26.0

Description:

Allocation of Resources Without Limits or Throttling vulnerability in Apache Commons Compress.This issue affects Apache
Commons Compress: from 1.21 before 1.26.

Users are recommended to upgrade to version 1.26, which fixes the issue.

Credit:

Yakov Shafranovich, Amazon Web Services (reporter)

References:

https://commons.apache.org/
„}]] Read More 

Schreibe einen Kommentar

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert