CVE-2018-1339

Description

A carefully crafted (or fuzzed) file can trigger an infinite loop in Apache Tikas ChmParser in versions of Apache Tika before 1.18.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
4.517

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2018-1339 are fixed in Apache-tika-parsers 1.18Windows
Vulnerabilities CVE-2018-1339 are fixed in Apache-tika-parsers for Linux 1.18Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234