Lucene search

K
osvGoogleOSV:GHSA-MM7M-XG4H-6M52
HistoryAug 06, 2019 - 1:43 a.m.

Allocation of Resources Without Limits or Throttling in Apache Tika

2019-08-0601:43:35
Google
osv.dev
14

EPSS

0.002

Percentile

56.8%

A carefully crafted package/compressed file that, when unzipped/uncompressed yields the same file (a quine), causes a StackOverflowError in Apache Tika’s RecursiveParserWrapper in versions 1.7-1.21. Apache Tika users should upgrade to 1.22 or later.