CVE-2012-0213
published 2012-08-07CVE-2012-0213: The UnhandledDataStructure function in hwpf/model/UnhandledDataStructure.java in Apache POI 3.8 and earlier allows remote attackers to cause a denial of…
medium5CVSS 3.1
AVNACLAuNCNINAP
The UnhandledDataStructure function in hwpf/model/UnhandledDataStructure.java in Apache POI 3.8 and earlier allows remote attackers to cause a denial of service (OutOfMemoryError exception and possibly JVM destabilization) via a crafted length value in a Channel Definition Format (CDF) or Compound File Binary Format (CFBF) document.
Affected
35 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | poi | <= 3.8 | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |
| apache | poi | — | — |