Rewterz
Rewterz Threat Advisory – CVE-2023-41179 – Trend Micro Endpoint Security Products Vulnerability
September 19, 2023
Rewterz
Rewterz Threat Alert – An Emerging Ducktail Infostealer – Active IOCs
September 19, 2023

Rewterz Threat Advisory – CVE-2023-42503 – Apache Commons Compress Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-42503

Apache Commons Compress is vulnerable to a denial of service, caused by improper input validation. By persuading a victim to open a specially crafted TAR file, a remote attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2023-42503

Affected Vendors

Apache

Affected Products

  • Apache Commons Compress 1.22

Remediation

Upgrade to the latest version of Apache Commons Compress, available from the Apache Website. 

Apache Website