Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-3635
HistoryJul 12, 2023 - 7:15 p.m.

Design/Logic Flaw

2023-07-1219:15:00
PRIOn knowledge base
www.prio-n.com
9
gzipsource
exception handling
denial of service
vulnerability

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.8%

GzipSource does not handle an exception that might be raised when parsing a malformed gzip buffer. This may lead to denial of service of the Okio client when handling a crafted GZIP archive, by using the GzipSource class.

CPENameOperatorVersion
okioge2.0.0
okiolt3.4.0
okioge0.5.0
okiolt1.17.6

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.8%