Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-5644

Опубликовано: 24 мар. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.1
CVSS3: 5.5

Описание

Apache POI in versions prior to release 3.15 allows remote attackers to cause a denial of service (CPU consumption) via a specially crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

4.0.1-1~18.03
cosmic

not-affected

4.0.1-1~18.03
devel

not-affected

4.0.1-1~18.03
disco

not-affected

4.0.1-1~18.03
eoan

not-affected

4.0.1-1~18.03
esm-apps/bionic

not-affected

4.0.1-1~18.03
esm-apps/focal

not-affected

4.0.1-1~18.03
esm-apps/jammy

not-affected

4.0.1-1~18.03
esm-apps/noble

not-affected

4.0.1-1~18.03

Показывать по

EPSS

Процентиль: 71%
0.0066
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
почти 9 лет назад

Apache POI in versions prior to release 3.15 allows remote attackers to cause a denial of service (CPU consumption) via a specially crafted OOXML file, aka an XML Entity Expansion (XEE) attack.

CVSS3: 5.5
debian
почти 9 лет назад

Apache POI in versions prior to release 3.15 allows remote attackers t ...

CVSS3: 5.5
github
больше 3 лет назад

Improper Restriction of Recursive Entity References in DTDs in Apache POI

EPSS

Процентиль: 71%
0.0066
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3