Lucene search

K
osvGoogleOSV:GHSA-7HFM-57QF-J43Q
HistoryAug 02, 2021 - 4:55 p.m.

Excessive Iteration in Compress

2021-08-0216:55:07
Google
osv.dev
32

0.021 Low

EPSS

Percentile

89.3%

When reading a specially crafted 7Z archive, the construction of the list of codecs that decompress an entry can result in an infinite loop. This could be used to mount a denial of service attack against services that use Compress’ sevenz package.

References