QID 981017
QID 981017: Java (maven) Security Update for org.apache.tika:tika-core (GHSA-j8g6-2wh7-6439)
Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-j8g6-2wh7-6439 for updates pertaining to this vulnerability.
Vendor References
- GHSA-j8g6-2wh7-6439 -
github.com/advisories/GHSA-j8g6-2wh7-6439
CVEs related to QID 981017
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-j8g6-2wh7-6439 | org.apache.tika:tika-core |
|