Advisories ยป MGASA-2021-0378

Updated pdfbox packages fix security vulnerabilities

Publication date: 27 Jul 2021
Modification date: 27 Jul 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-31811 , CVE-2021-31812

Description

In Apache PDFBox, a carefully crafted PDF file can trigger an
OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox
version 2.0.23 and prior 2.0.x versions (CVE-2021-31811).

In Apache PDFBox, a carefully crafted PDF file can trigger an infinite loop
while loading the file. This issue affects Apache PDFBox version 2.0.23 and
prior 2.0.x versions (CVE-2021-31812).
                

References

SRPMS

8/core