QID 981287
QID 981287: Java (maven) Security Update for org.apache.tika:tika-core (GHSA-5mf7-26mw-3rqr)
A carefully crafted (or fuzzed) file can trigger an infinite loop in Apache Tika's BPGParser in versions of Apache Tika before 1.18.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-5mf7-26mw-3rqr for updates pertaining to this vulnerability.
Vendor References
- GHSA-5mf7-26mw-3rqr -
github.com/advisories/GHSA-5mf7-26mw-3rqr
CVEs related to QID 981287
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-5mf7-26mw-3rqr | org.apache.tika:tika-core |
|