Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3574

Опубликовано: 04 сент. 2014
Источник: debian
EPSS Средний

Описание

Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libapache-poi-javafixed3.10.1-1package
libapache-poi-javano-dsawheezypackage

Примечания

  • https://issues.apache.org/bugzilla/show_bug.cgi?id=54764

EPSS

Процентиль: 93%
0.11114
Средний

Связанные уязвимости

ubuntu
больше 11 лет назад

Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

redhat
больше 11 лет назад

Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

nvd
больше 11 лет назад

Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

github
больше 3 лет назад

Improper Input Validation in Apache POI

EPSS

Процентиль: 93%
0.11114
Средний