QID 980969
QID 980969: Java (maven) Security Update for org.apache.tika:tika-core (GHSA-p699-3wgc-7h72)
A carefully crafted (or fuzzed) file can trigger an infinite loop in Apache Tika's ChmParser in versions of Apache Tika before 1.18.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-p699-3wgc-7h72 for updates pertaining to this vulnerability.
Vendor References
- GHSA-p699-3wgc-7h72 -
github.com/advisories/GHSA-p699-3wgc-7h72
CVEs related to QID 980969
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-p699-3wgc-7h72 | org.apache.tika:tika-core |
|