CVE-2021-31812

MEDIUM

Apache Pdfbox < 2.0.23 - Infinite Loop

Title source: rule
STIX 2.1

Description

In Apache PDFBox, a carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.0.23 and prior 2.0.x versions.

References (16)

Scores

CVSS v3 5.5
EPSS 0.0023
EPSS Percentile 45.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Details

CWE
CWE-834 CWE-835
Status published
Products (16)
apache/pdfbox 2.0.0 - 2.0.23
fedoraproject/fedora 33
fedoraproject/fedora 34
oracle/banking_corporate_lending_process_management 14.2.0
oracle/banking_corporate_lending_process_management 14.3.0
oracle/banking_corporate_lending_process_management 14.5.0
oracle/banking_credit_facilities_process_management 14.2.0
oracle/banking_credit_facilities_process_management 14.3.0
oracle/banking_credit_facilities_process_management 14.5.0
oracle/banking_supply_chain_finance 14.2.0
... and 6 more
Published Jun 12, 2021
Tracked Since Feb 18, 2026