Headline
CVE-2023-24785: PeaZip / Tickets / #734 found denial of service attack (DoS)
An issue in Giorgio Tani peazip v.9.0.0 allows attackers to cause a denial of service via the End of Archive tag function of the peazip/pea UNPEA feature.
Discussion
Giorgio Tani - 2023-01-23
Thank you for reporting the issue.
If the End Of Archive tag is not found in the archive file, the application currently does not correctly terminate and re-start parsing the archive, due to a bug.
In the next update the application will terminate and display a specific error if the End Of Archive tag is missing.
Log in to post a comment.