Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35567
HistoryMay 17, 2022 - 7:13 a.m.

Denial Of Service (DoS)

2022-05-1707:13:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
denial of service
apache tika
regular expression
standardsextractingcontenthandler

EPSS

0.001

Percentile

39.4%

Apache Tika core is vulnerable to service attacks. A malicious user is able to cause denial of service conditions due to a regular expression in our StandardsText class by backtracking on a specially crafted file. This only affects users who are running the StandardsExtractingContentHandler.