In Splunk Enterprise and Universal Forwarder versions in the following table, indexing a specially crafted ZIP file using the file monitoring input can result in a crash of the application. Attempts to restart the application would result in a crash and would require manually removing the malformed file.
2022-08-16T21:15:13.637
2024-11-21T07:14:59.880
Modified
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | splunk | splunk | < 8.1.11 | Yes |
Application | splunk | splunk | < 8.2.7.1 | Yes |
Application | splunk | universal_forwarder | < 8.1.11 | Yes |
Application | splunk | universal_forwarder | < 8.2.7.1 | Yes |