Security Advisory

CVE-2023-3635

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-12 18:34:31
Last updated 2024-10-23 13:32:52
Assigner JFROG
State PUBLISHED

Description

GzipSource does not handle an exception that might be raised when parsing a malformed gzip buffer. This may lead to denial of service of the Okio client when handling a crafted GZIP archive, by using the GzipSource class.