Back to search
CVE-2022-33879
Published: Jun 27, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
The initial fixes in CVE-2022-30126 and CVE-2022-30973 for regexes in the StandardsExtractingContentHandler were insufficient, and we found a separate, new regex DoS in a different regex in the StandardsExtractingContentHandler. These are now fixed in 1.28.4 and 2.4.1.
| Vendor | Product | Versions |
|---|---|---|
Apache Software Foundation | Apache Tika | affected Apache Tika - < 2.4.1 |
References
https://lists.apache.org/thread/wfno8mf5nlcvbs78z93q9thgrm30wwfh
x_refsource_MISC
https://security.netapp.com/advisory/ntap-20220812-0004/
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now