CVE-2023-22898
10.01.2023, 02:15
workers/extractor.py in Pandora (aka pandora-analysis/pandora) 1.3.0 allows a denial of service when an attacker submits a deeply nested ZIP archive (aka ZIP bomb).Enginsight
Vendor | Product | Version |
---|---|---|
circl | pandora | 𝑥 < 1.3.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration