advisory-database icon indicating copy to clipboard operation
advisory-database copied to clipboard

[GHSA-3448-vfvv-xp9g] Apache Tika Denial of Service due to Infinite Loop in Tika's SQLite3Parser

Open MarkLee131 opened this issue 1 year ago • 1 comments

Updates

  • Affected products
  • References

Comments Add a patch https://github.com/apache/tika/commit/0c49c851979163334ea05cbebdd11ff87feba62d, of which the commit message claims TIKA-2773 upgrade sqlite version

MarkLee131 avatar Mar 04 '24 04:03 MarkLee131

Hey @MarkLee131, I'm not sure I follow on an sqlite version update resolving an infinite loop. Am I missing something?

darakian avatar Mar 04 '24 22:03 darakian

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

taladrane avatar Mar 20 '24 00:03 taladrane

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

taladrane avatar Apr 07 '24 00:04 taladrane