Apache Tika CVE-2018-11796 Incomplete Fix XML External Entity Denial of Service Vulnerability

Bugtraq ID: 105585
Class: Input Validation Error
CVE: CVE-2018-11796
Remote: Yes
Local: No
Published: Oct 10 2018 12:00AM
Updated: Oct 10 2018 12:00AM
Credit: Slava Gorelik of CloudAlly.
Vulnerable: Redhat Software Collections for RHEL 0
Apache Tika 1.9
Apache Tika 1.7
Apache Tika 1.6
Apache Tika 1.2
Apache Tika 1.19
Apache Tika 1.18
Apache Tika 1.17
Apache Tika 1.14
Apache Tika 1.13
Apache Tika 1.12
Apache Tika 1.11
Apache Tika 1.10
Apache Tika 0.9
Apache Tika 0.10
Apache Tika 0.1
Not Vulnerable: Apache Tika 1.19.1


 

Privacy Statement
Copyright 2010, SecurityFocus