Pedestrian Fisherman

Challenge Information

Project: apache-commons-compress

Type: delta

Harnesses: 16

Vulnerabilities: 1


GitHubChallenge DownloadChallenge Diff

AFC Challenge Performance

Number of Unique Vulnerabilities Discovered: #

Number of Teams with Scoring PoVs: 4

Number of Teams with Scoring Patches: 3

Number of Teams with Scoring Bundles: 4


Total Points Scored for this Challenge: 33.012367391714264

What design decisions were considered for this challenge?

Final step on the zip slip ladder in commons-compress

Why this set of vulnerabilities?

This challenge models a single, new feature pull request.

Delta vs Full and why?

Isolated as delta because it would conflict with some other Expander vulnerabilities.

Challenge Harnesses

  • ArchiverArFuzzer
  • ArchiverArjFuzzer
  • ArchiverCpioFuzzer
  • ArchiverDumpFuzzer
  • ArchiverTarStreamFuzzer
  • ArchiverZipStreamFuzzer
  • CompressorBZip2Fuzzer
  • CompressorDeflate64Fuzzer
  • CompressorGzipFuzzer
  • CompressorLZ4Fuzzer
  • CompressorSnappyFuzzer
  • CompressorZFuzzer
  • CompressSevenZFuzzer
  • CompressTarFuzzer
  • CompressZipFuzzer
  • ExpanderFuzzer

Challenge Vulnerabilities