Junglewise Threat Intelligence

CVE-2018-1324: Apache Commons Compress vulnerable to denial of service due to infinite loop

CVE-2018-1324 · Severity: low · CVSS 3 · Published 2019-03-14

Technologies: org.apache.commons:commons-compress (Maven). Vendors: Maven.

Executive brief

Apache Commons Compress vulnerable to denial of service due to infinite loop

Affected products

  • Maven io.takari:commons-compress
  • Maven com.liferay:com.liferay.portal.tools.bundle.support
  • Maven org.apache.commons:commons-compress

Related threats