漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Grav before 2.0.2 Decompression Bomb via Forged ZIP Size
Vulnerability Description
Grav 2.0.1 contains a decompression-bomb size-cap bypass in ZipArchiver and GPM\Installer. The size bound introduced in 2.0.1 sums the uncompressed size declared in each entry's ZIP central-directory header (ZipArchive::statIndex()['size']) and rejects archives exceeding system.gpm.archive.max_uncompressed_size before extraction. Because this declared size is attacker-forgeable and is not cross-checked against the actual inflated stream, a crafted archive declaring tiny per-entry sizes passes the cap while extractTo() writes the real, much larger content, filling disk or exhausting inodes. The archive must be supplied by a package source or admin upload (admin/operator trust). Fixed in 2.0.2. This is an incomplete fix for GHSA-928x-9mpw-8h56.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Vulnerability Type
对高度压缩数据的处理不恰当(数据放大攻击)
Vulnerability Title
getgrav Grav 资源管理错误漏洞
Vulnerability Description
getgrav Grav是getgrav个人开发者开源的一套可扩展的内容管理系统。 getgrav Grav 2.0.1版本存在资源管理错误漏洞,该漏洞源于ZipArchiver和GPM\Installer中存在解压炸弹大小上限绕过漏洞,攻击者在声明每个条目ZIP中央目录标头中未压缩大小时可伪造,导致特制归档文件绕过大小上限并写出实际更大内容,从而填满磁盘或耗尽inode。
CVSS Information
N/A
Vulnerability Type
N/A