CVE-2021-31811: A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading a tiny file
Apache PDFBox is vulnerable to a denial of service, caused by an out-of-memory exception while loading a file. By persuading a victim to open a specially-crafted PDF file, a remote attacker could exploit this vulnerability to cause a denial of service.
Other sources
In Apache PDFBox, a carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox version 2.0.23 and prior 2.0.x versions.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-31811?
CVE-2021-31811 is a vulnerability in Apache PDFBox that can trigger an OutOfMemory-Exception while loading a PDF file, leading to a denial of service.
How does CVE-2021-31811 affect Apache PDFBox?
CVE-2021-31811 affects Apache PDFBox by causing an out-of-memory exception, which can be exploited by an attacker to cause a denial of service.
What is the severity of CVE-2021-31811?
The severity of CVE-2021-31811 is medium with a CVSS score of 5.5.
How can CVE-2021-31811 be exploited?
CVE-2021-31811 can be exploited by persuading a victim to open a specially-crafted PDF file.
How can I mitigate CVE-2021-31811?
To mitigate CVE-2021-31811, ensure you update to the latest version of Apache PDFBox when a patch becomes available.