VDB
BDU%3A2021-04206
BDU%3A2021-04206
PUBLISHED
CVSS 5 MEDIUM
Уязвимость архиватора Apache Commons Compress, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Apache Software Foundation, АО «Концерн ВНИИНС», ООО «Ред Софт», АО "НППКТ" | Red Hat Enterprise Linux, Red Hat Software Collections, Commons Compress, ОС ОН «Стрелец» (запись в едином реестре российских программ №6177), РЕД ОС (запись в едином реестре российских программ №3751), ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Aug 25, 2021 CVE Published
- Aug 6, 2024 CVE Updated
References
- http://www.openwall.com/lists/oss-security/2021/07/13/3 url
- http://www.openwall.com/lists/oss-security/2021/07/13/5 url
- https://commons.apache.org/proper/commons-compress/security-reports.html url
- https://lists.apache.org/thread.html/r457b2ed564860996b20d938566fe8bd4bfb7c37be8e205448ccb5975@%3Cannounce.apache.org%3E url
- https://lists.apache.org/thread.html/r54afdab05e01de970649c2d91a993f68a6b00cd73e6e34e16c832d46@%3Cuser.ant.apache.org%3E url
- https://lists.apache.org/thread.html/r605d906b710b95f1bbe0036a53ac6968f667f2c249b6fbabada9a940%40%3Cuser.commons.apache.org%3E url
- https://lists.apache.org/thread.html/ra393ffdc7c90a4a37ea023946f390285693795013a642d80fba20203@%3Cannounce.apache.org%3E url
- https://nvd.nist.gov/vuln/detail/CVE-2021-35517 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.5/ url
- https://strelets.net/patchi-i-obnovleniya-bezopasnosti#16012023 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://lists.apache.org/thread.html/rb064d705fdfa44b5dae4c366b369ef6597951083196321773b983e71@%3Ccommits.pulsar.apache.org%3E advisory
- https://access.redhat.com/security/cve/cve-2021-35517 advisory
- https://strelets.net/patchi-i-obnovleniya-bezopasnosti#08122021 advisory