CVE-2012-2098

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
29/06/2012
Last modified:
11/04/2025

Description

Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream) in Apache Commons Compress before 1.4.1 allows remote attackers to cause a denial of service (CPU consumption) via a file with many repeating inputs.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:commons_compress:*:*:*:*:*:*:*:* 1.4.1 (excluding)


References to Advisories, Solutions, and Tools