QID 981794
QID 981794: Java (maven) Security Update for org.apache.sanselan:sanselan (GHSA-g99m-3m46-4gm9)
Certain input files could make the code to enter into an infinite loop when Apache Sanselan 0.97-incubator was used to parse them, which could be used in a DoS attack. Note that Apache Sanselan (incubating) was renamed to Apache Commons Imaging.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-g99m-3m46-4gm9 for updates pertaining to this vulnerability.
Vendor References
- GHSA-g99m-3m46-4gm9 -
github.com/advisories/GHSA-g99m-3m46-4gm9
CVEs related to QID 981794
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-g99m-3m46-4gm9 | org.apache.sanselan:sanselan |
|