Allocation of Resources Without Limits or Throttling vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.21 before 1.26.
Users are recommended to upgrade to version 1.26, which fixes the issue.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.openwall.com/lists/oss-security/2024/02/19/2 | Mailing List Third Party Advisory | 
| https://lists.apache.org/thread/ch5yo2d21p7vlqrhll9b17otbyq4npfg | Vendor Advisory | 
| https://security.netapp.com/advisory/ntap-20240307-0009/ | Third Party Advisory | 
| http://www.openwall.com/lists/oss-security/2024/02/19/2 | Mailing List Third Party Advisory | 
| https://lists.apache.org/thread/ch5yo2d21p7vlqrhll9b17otbyq4npfg | Vendor Advisory | 
| https://security.netapp.com/advisory/ntap-20240307-0009/ | Third Party Advisory | 
Configurations
                    History
                    13 Feb 2025, 18:17
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | (en) Allocation of Resources Without Limits or Throttling vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.21 before 1.26. Users are recommended to upgrade to version 1.26, which fixes the issue. | 
Information
                Published : 2024-02-19 09:15
Updated : 2025-03-27 20:15
NVD link : CVE-2024-26308
Mitre link : CVE-2024-26308
CVE.ORG link : CVE-2024-26308
JSON object : View
Products Affected
                apache
- commons_compress
CWE
                
                    
                        
                        CWE-770
                        
            Allocation of Resources Without Limits or Throttling
