Lucene search

K
osvGoogleOSV:CVE-2021-42391
HistoryMar 14, 2022 - 11:15 p.m.

CVE-2021-42391

2022-03-1423:15:08
Google
osv.dev
7
clickhouse
gorilla compression
vulnerability
cve-2021-42391
software

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

34.1%

Divide-by-zero in Clickhouse’s Gorilla compression codec when parsing a malicious query. The first byte of the compressed buffer is used in a modulo operation without being checked for 0.

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

34.1%

Related for OSV:CVE-2021-42391