CVE-2021-31812

Description

In Apache PDFBox, a carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.0.23 and prior 2.0.x versions.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.209

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-31811,CVE-2021-31812 are fixed in Apache-pdfbox 2.0.24Windows
Vulnerabilities CVE-2021-31811,CVE-2021-31812 are fixed in Apache-pdfbox-parent 2.0.24Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.2.0Windows
Multiple Vulnerabilities are affected in IBM Business Automation Workflow 20.0.0.2Windows
Multiple Vulnerabilities are affected in IBM Business Automation Workflow 21.0.3Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.1Windows
Vulnerabilities CVE-2021-31811,CVE-2021-31812 are fixed in Apache-pdfbox for Linux 2.0.24Linux
Vulnerabilities CVE-2021-31811,CVE-2021-31812 are fixed in Apache-pdfbox-parent for Linux 2.0.24Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234