ZeroHour

CVE-2019-10093

CVSS 3.0
6.5 medium
EPSS
4%p89
Published
()
Modified
Description

In Apache Tika 1.19 to 1.21, a carefully crafted 2003ml or 2006ml file could consume all available SAXParsers in the pool and lead to very long hangs. Apache Tika users should upgrade to 1.22 or later.

Vendors
apache
Products
tika
Weakness
CWE-770
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.