MEDIUM 6.5 Maven

Apache Tika Denial of Service due to Infinite Loop in Tika's SQLite3Parser

GHSA-3448-vfvv-xp9g · CVE-2018-17197

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

A carefully crafted or corrupt sqlite file can cause an infinite loop in Apache Tika's SQLite3Parser in versions 1.8-1.19.1 of Apache Tika.

Ready to move

Start Securing

Free, no credit card | First findings in minutes