Package        : libpdfbox-java
Version        : 1:1.8.7+dfsg-1+deb8u2
CVE ID         : CVE-2018-11797
Debian Bug     : #910390

It was discovered that there was a denial-of-service vulnerability in
libpdfbox-java, a PDF library for Java.

A malicious PDF file could have triggered an extremely long running
computation when parsing the page tree.

For Debian 8 "Jessie", this issue has been fixed in libpdfbox-java version
1:1.8.7+dfsg-1+deb8u2.

We recommend that you upgrade your libpdfbox-java packages.


Regards,

- -- 
      ,''`.
     : :'  :     Chris Lamb
     `. `'`      lamby@debian.org / chris-lamb.co.uk
       `-

Debian LTS: DLA-1547-1: libpdfbox-java security update

October 16, 2018
It was discovered that there was a denial-of-service vulnerability in libpdfbox-java, a PDF library for Java

Summary

For Debian 8 "Jessie", this issue has been fixed in libpdfbox-java version
1:1.8.7+dfsg-1+deb8u2.

We recommend that you upgrade your libpdfbox-java packages.


Regards,

- --
,''`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Severity
Package : libpdfbox-java
Version : 1:1.8.7+dfsg-1+deb8u2
CVE ID : CVE-2018-11797
Debian Bug : #910390

Related News