Vulnerabilities (CVE)

Filtered by vendor Tukaani Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-22916 1 Tukaani 1 Xz 2023-08-25 N/A 5.5 MEDIUM
An issue discovered in XZ 5.2.5 allows attackers to cause a denial of service via decompression of crafted file.
CVE-2015-4035 2 Redhat, Tukaani 2 Enterprise Linux, Xz 2019-04-22 4.6 MEDIUM 7.8 HIGH
scripts/xzgrep.in in xzgrep 5.2.x before 5.2.0, before 5.0.0 does not properly process file names containing semicolons, which allows remote attackers to execute arbitrary code by having a user run xzgrep on a crafted file name.