Skip to main content

Threats Tagged 'cve-2024-25710'

View all threats tagged with 'cve-2024-25710'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2024-25710

Threats Tagged 'cve-2024-25710'

Click on any threat for detailed analysis and mitigation recommendations

Red Hat Integration - Service Registry 2.5.11 GA includes multiple security fixes addressing denial of service, memory leaks, and resource allocation issues in underlying components such as commons-compress, vert.x, and netty-codec-http. These vulnerabilities could lead to service disruption or resource exhaustion. The update is rated with a moderate security impact by Red Hat Product Security. No CVSS scores are provided in the advisory. The update is available as container images from the Red Hat Container Catalog.

Join the discussion

Red Hat has released a security update for Red Hat build of Quarkus 2.13.9.SP2 addressing three vulnerabilities: CVE-2024-1597, which allows SQL injection via the PostgreSQL JDBC Driver when using PreferQueryMode=SIMPLE; CVE-2024-25710, a denial of service caused by an infinite loop when processing corrupted DUMP files in Apache Commons Compress; and CVE-2024-26308, which can cause an OutOfMemoryError when unpacking broken Pack200 files in Apache Commons Compress. These issues are rated as important by Red Hat and are fixed in this update. Users should apply this update after ensuring all prior relevant errata are installed.

Join the discussion

A denial of service vulnerability (CVE-2024-25710) exists in the commons-compress library used by Red Hat Migration Toolkit for Runtimes 1.2.5. The issue is caused by an infinite loop triggered by a corrupted DUMP file. Red Hat has released an update addressing this vulnerability in version 1.2.5 of the Migration Toolkit for Runtimes. The severity of this issue is rated as moderate by Red Hat. No known exploits are reported in the wild at this time.

Join the discussion

Red Hat Data Grid 8.4.7 addresses two moderate severity security vulnerabilities in the commons-compress library that could cause denial of service conditions. These issues involve an infinite loop triggered by a corrupted DUMP file and an OutOfMemoryError when unpacking a broken Pack200 file. The update replaces version 8.4.6 and includes these security fixes along with other bug fixes and enhancements.

Join the discussion

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Commons Compress.This issue affects Apache Commons Compress: from 1.3 through 1.25.0. Users are recommended to upgrade to version 1.26.0 which fixes the issue.

Join the discussion

Showing 1 to 5 of 5 results

Filters:Tag: cve-2024-25710
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses