Medium severity5.5NVD Advisory· Published Jun 14, 2018· Updated Jun 17, 2026
CVE-2018-12418
CVE-2018-12418
Description
Archive.java in Junrar before 1.0.1, as used in Apache Tika and other products, is affected by a denial of service vulnerability due to an infinite loop when handling corrupt RAR files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.github.junrar:junrarMaven | < 1.0.1 | 1.0.1 |
Affected products
1Patches
Vulnerability mechanics
References
4- github.com/junrar/junrar/commit/ad8d0ba8e155630da8a1215cee3f253e0af45817nvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-5xqr-grq4-qwgxghsaADVISORY
- github.com/junrar/junrar/pull/8nvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2018-12418ghsaADVISORY
News mentions
0No linked articles in our index yet.