7.5
CVSSv3

CVE-2023-3635

Published: 12/07/2023 Updated: 25/10/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

GzipSource does not handle an exception that might be raised when parsing a malformed gzip buffer. This may lead to denial of service of the Okio client when handling a crafted GZIP archive, by using the GzipSource class.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

squareup okio

Vendor Advisories

Synopsis Critical: Red Hat Fuse 7121 release and security update Type/Severity Security Advisory: Critical Topic A minor version update (from 712 to 7121) is now available for Red Hat Fuse The purpose of this text-only errata is to inform you about the security issues fixed in this releaseRed Hat Product Security has rated this update ...

Github Repositories

Defensics plugin for Jenkins

Defensics Jenkins Plugin This plugin allows Jenkins builds to run Defensics as a build or post-build step This README includes information for plugin developers For information on how to use the plugin, see Defensics Jenkins Plugin User Guide Getting started Prerequisites Java 11 Maven Configuring IntelliJ IDEA We use IntelliJ IDEA (community edition is enough) for develop