USN-7529-1
Dashboard / Vulnerabilities / USN-7529-1
USN-7529-1
Summary: tika vulnerabilities
Details: It was discovered that Apache Tika can have an excessive memory usage by using a crafted or corrupt PSD file. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.04 LTS. (CVE-2020-1950, CVE-2020-1951) It was discovered that Apache Tika incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. (CVE-2022-30126, CVE-2022-30973, CVE-2022-33879)
References: https://ubuntu.com/security/notices/USN-7529-1, https://ubuntu.com/security/CVE-2020-1950, https://ubuntu.com/security/CVE-2020-1951, https://ubuntu.com/security/CVE-2022-30126, https://ubuntu.com/security/CVE-2022-30973, https://ubuntu.com/security/CVE-2022-33879
Affected packages
Package
Name: tika
Purl: pkg:deb/ubuntu/[email protected]~esm1?arch=source&distro=esm-apps/focal
Affected ranges
Type: ECOSYSTEM
Events:
