CVE-2022-37439
16.08.2022, 21:15
In Splunk Enterprise and Universal Forwarder versions in the following table, indexing a specially crafted ZIP file using the file monitoring input can result in a crash of the application. Attempts to restart the application would result in a crash and would require manually removing the malformed file.
| Vendor | Product | Version |
|---|---|---|
| splunk | splunk | 8.1.0 ≤ 𝑥 < 8.1.11 |
| splunk | splunk | 8.2.0 ≤ 𝑥 < 8.2.7.1 |
| splunk | universal_forwarder | 8.1.0 ≤ 𝑥 < 8.1.11 |
| splunk | universal_forwarder | 8.2.0 ≤ 𝑥 < 8.2.7.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References