Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
zip4j up to v2.10.0 can throw various uncaught exceptions while parsing a specially crafted ZIP file, which could result in an application crash. This could be used to mount a denial of service attack against services that use zip4j library.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
zip4j 安全漏洞
Vulnerability Description
Zip4j是Srikanth Reddy Lingala个人开发者的用于 zip 文件和流的 Java 库。 zip4j 存在安全漏洞,该漏洞源于在解析一个特别制作的ZIP文件时,zip4j(最高为2.9.0)可以抛出各种未捕获的异常,这可能会导致应用程序崩溃。攻击者可利用该漏洞来对使用zip4j库的服务发起拒绝服务攻击。
CVSS Information
N/A
Vulnerability Type
N/A