vulnerability

SUSE: CVE-2024-26308: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
2024-02-19
Added
2024-03-01
Modified
2025-01-28

Description

Allocation of Resources Without Limits or Throttling vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.21 before 1.26.

Users are recommended to upgrade to version 1.26, which fixes the issue.

Solution(s)

suse-upgrade-apache-commons-codecsuse-upgrade-apache-commons-codec-javadocsuse-upgrade-apache-commons-compresssuse-upgrade-apache-commons-compress-javadocsuse-upgrade-apache-commons-configuration2suse-upgrade-apache-commons-configuration2-javadocsuse-upgrade-apache-commons-iosuse-upgrade-apache-commons-io-javadocsuse-upgrade-gradle-localsuse-upgrade-ivy-localsuse-upgrade-mavensuse-upgrade-maven-assembly-pluginsuse-upgrade-maven-assembly-plugin-javadocsuse-upgrade-maven-doxia-coresuse-upgrade-maven-doxia-javadocsuse-upgrade-maven-doxia-logging-apisuse-upgrade-maven-doxia-module-aptsuse-upgrade-maven-doxia-module-confluencesuse-upgrade-maven-doxia-module-docbook-simplesuse-upgrade-maven-doxia-module-fmlsuse-upgrade-maven-doxia-module-fosuse-upgrade-maven-doxia-module-latexsuse-upgrade-maven-doxia-module-rtfsuse-upgrade-maven-doxia-module-twikisuse-upgrade-maven-doxia-module-xdocsuse-upgrade-maven-doxia-module-xhtmlsuse-upgrade-maven-doxia-module-xhtml5suse-upgrade-maven-doxia-sink-apisuse-upgrade-maven-doxia-sitetoolssuse-upgrade-maven-doxia-sitetools-javadocsuse-upgrade-maven-doxia-test-docssuse-upgrade-maven-jar-pluginsuse-upgrade-maven-jar-plugin-bootstrapsuse-upgrade-maven-jar-plugin-javadocsuse-upgrade-maven-javadocsuse-upgrade-maven-javadoc-pluginsuse-upgrade-maven-javadoc-plugin-bootstrapsuse-upgrade-maven-javadoc-plugin-javadocsuse-upgrade-maven-libsuse-upgrade-maven-localsuse-upgrade-maven-reporting-apisuse-upgrade-maven-reporting-api-javadocsuse-upgrade-maven-reporting-implsuse-upgrade-maven-reporting-impl-javadocsuse-upgrade-maven-resolversuse-upgrade-maven-resolver-apisuse-upgrade-maven-resolver-connector-basicsuse-upgrade-maven-resolver-implsuse-upgrade-maven-resolver-javadocsuse-upgrade-maven-resolver-named-lockssuse-upgrade-maven-resolver-spisuse-upgrade-maven-resolver-test-utilsuse-upgrade-maven-resolver-transport-classpathsuse-upgrade-maven-resolver-transport-filesuse-upgrade-maven-resolver-transport-httpsuse-upgrade-maven-resolver-transport-wagonsuse-upgrade-maven-resolver-utilsuse-upgrade-maven-resources-pluginsuse-upgrade-maven-resources-plugin-bootstrapsuse-upgrade-maven-resources-plugin-javadocsuse-upgrade-sbtsuse-upgrade-sbt-bootstrapsuse-upgrade-xmvnsuse-upgrade-xmvn-apisuse-upgrade-xmvn-connectorsuse-upgrade-xmvn-connector-javadocsuse-upgrade-xmvn-coresuse-upgrade-xmvn-installsuse-upgrade-xmvn-minimalsuse-upgrade-xmvn-mojosuse-upgrade-xmvn-mojo-javadocsuse-upgrade-xmvn-parentsuse-upgrade-xmvn-resolvesuse-upgrade-xmvn-substsuse-upgrade-xmvn-tools-javadoc
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.