Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25075
HistoryApr 27, 2020 - 12:54 p.m.

Denial Of Service (DoS)

2020-04-2712:54:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.001 Low

EPSS

Percentile

23.6%

Apache Tika is vulnerable to denial of service (DoS). When an attacker parses a malicious file as input, it invokes a System.exit in Tika’s OneNote Parser, subsequently causing an infinite loops or out of memory exceptions in Tika’s ICNSParser, MP3Parser, MP4Parser, SAS7BDATParser, OneNoteParser and ImageParser.