CVE-2012-2098

EPSS 1.8%

Uncontrolled Resource Consumption in Apache Commons Compress

Published: 5/13/2022Modified: 4/28/2026

Description

Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream) in Apache Commons Compress before 1.4.1 allows remote attackers to cause a denial of service (CPU consumption) via a file with many repeating inputs.

Affected packages (2)

References (32)