CVE-2023-3635

GzipSource does not handle an exception that might be raised when parsing a malformed gzip buffer. This may lead to denial of service of the Okio client when handling a crafted GZIP archive, by using the GzipSource class.
Configurations

Configuration 1 (hide)

cpe:2.3:a:squareup:okio:*:*:*:*:*:*:*:*

Information

Published : 2023-07-12 19:15

Updated : 2023-07-26 16:24


NVD link : CVE-2023-3635

Mitre link : CVE-2023-3635


JSON object : View

Products Affected

squareup

  • okio
CWE
CWE-681

Incorrect Conversion between Numeric Types