In Apache Tika 1.19 to 1.21, a carefully crafted 2003ml or 2006ml file could consume all available SAXParsers in the pool and lead to very long hangs. Apache Tika users should upgrade to 1.22 or later.
References
Configurations
History
No history.
Information
Published : 2019-08-02 19:15
Updated : 2024-02-04 20:20
NVD link : CVE-2019-10093
Mitre link : CVE-2019-10093
CVE.ORG link : CVE-2019-10093
JSON object : View
Products Affected
apache
- tika
CWE
CWE-770
Allocation of Resources Without Limits or Throttling