CVE-2018-8036
published 2018-07-03CVE-2018-8036: In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory…
PriorityP431medium6.5CVSS 3.0
AVNACLPRNUIRSUCNINAH
EPSS
4.83%
91.0th percentile
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | pdfbox | <= 1.8.14 | — |
| apache | pdfbox | — | — |
| apache | pdfbox | — | — |
| apache | pdfbox | — | — |
| apache | pdfbox | 2.0.0 – 2.0.10 | — |
| apache | tika | — | — |
| apache_software_foundation | apache_pdfbox | — | — |
| apache_software_foundation | apache_pdfbox | — | — |
| debian | libpdfbox-java | < libpdfbox-java 1:1.8.15-1 (bookworm) | libpdfbox-java 1:1.8.15-1 (bookworm) |
| debian | libpdfbox2-java | < libpdfbox-java 1:1.8.15-1 (bookworm) | libpdfbox-java 1:1.8.15-1 (bookworm) |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM
vendor_apache6.5MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Loop with Unreachable Exit Condition in Apache PDFBox
osv·2022-05-13
CVE-2018-8036 [MEDIUM] Loop with Unreachable Exit Condition in Apache PDFBox
Loop with Unreachable Exit Condition in Apache PDFBox
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
GHSA
Loop with Unreachable Exit Condition in Apache PDFBox
ghsa·2022-05-13
CVE-2018-8036 [MEDIUM] CWE-835 Loop with Unreachable Exit Condition in Apache PDFBox
Loop with Unreachable Exit Condition in Apache PDFBox
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
OSV
CVE-2018-8036: In Apache PDFBox 1
osv·2018-07-03·CVSS 6.5
CVE-2018-8036 [MEDIUM] CVE-2018-8036: In Apache PDFBox 1
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
Red Hat
pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
vendor_redhat·2018-07-01·CVSS 6.5
CVE-2018-8036 [MEDIUM] CWE-400 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
Statement: While Fuse 6.3 and Fuse 7.0 ship vulnerable artifact via camel-pdfbox, however, the flawed code is not being used therefore no execution path leads to an exposure to this vulnerability, so both Fuse 6.3, 7 standalone are not affected. However, Fuse 7.0 on OpenShift ship vulnerable artifact via maven BOM, so setting Fuse 7.0 as affected for this reason only.
Package: pdfbox (Red Hat BPM Suite 6) - Not affected
Package: pdfbox (Red Hat JBoss BRMS 6) - Not affected
Package: pdfbox (Red Hat JBoss Data
Debian
CVE-2018-8036: libpdfbox-java - In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or...
vendor_debian·2018·CVSS 6.5
CVE-2018-8036 [MEDIUM] CVE-2018-8036: libpdfbox-java - In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or...
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.
Scope: local
bookworm: resolved (fixed in 1:1.8.15-1)
bullseye: resolved (fixed in 1:1.8.15-1)
forky: resolved (fixed in 1:1.8.15-1)
sid: resolved (fixed in 1:1.8.15-1)
trixie: resolved (fixed in 1:1.8.15-1)
Apache
Apache tika: CVE-2018-8036
vendor_apache·CVSS 6.5
CVE-2018-8036 [MEDIUM] Apache tika: CVE-2018-8036
Apache tika: CVE-2018-8036
Infinite Loop leading to OOM in PDFBox's AFMParser Tobias Ospelt ?-1.18
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF [fedora-all]
bugzilla·2018-07-03·CVSS 6.5
CVE-2018-8036 [MEDIUM] CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF [fedora-all]
CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue
Bugzilla
CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
bugzilla·2018-07-03·CVSS 6.5
CVE-2018-8036 [MEDIUM] CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
CVE-2018-8036 pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via crafted PDF
PDFBox before versions 1.8.15 and 2.0.11 has an infinitre loop in AFMParser.java. An attacker could exploit this to cause an out of memory error via a crafted PDF.
External Reference:
http://www.openwall.com/lists/oss-security/2018/06/29/1
Upstream Release Notes:
https://www.apache.org/dist/pdfbox/2.0.11/RELEASE-NOTES.txt
https://www.apache.org/dist/pdfbox/1.8.15/RELEASE-NOTES.txt
Upstream Issue:
https://issues.apache.org/jira/projects/PDFBOX/issues/PDFBOX-4251
Upstream Patches:
http://svn.apache.org/viewvc/pdfbox/trunk/fontbox/src/main/java/org/apache/fontbox/afm/AFMParser.java?rev=1834048&r1=1834047&r2=1834048&view=diff
http://svn.apache.org/viewvc/pdfbox/branches/2.0/fontbox
https://access.redhat.com/errata/RHSA-2018:2669https://lists.apache.org/thread.html/9f62f742fd4fcd81654a9533b8a71349b064250840592bcd502dcfb6%40%3Cusers.pdfbox.apache.org%3Ehttps://lists.apache.org/thread.html/r43491b25b2e5c368c34b106a82eff910a5cea3e90de82ad75cc16540%40%3Cdev.syncope.apache.org%3Ehttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6HKVPTJWZGUB4MH4AAOWMRJHRDBYFHGJ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/POPOGHJ5CVMUVCRQU7APBAN5IVZGZFDX/https://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://access.redhat.com/errata/RHSA-2018:2669https://lists.apache.org/thread.html/9f62f742fd4fcd81654a9533b8a71349b064250840592bcd502dcfb6%40%3Cusers.pdfbox.apache.org%3Ehttps://lists.apache.org/thread.html/r43491b25b2e5c368c34b106a82eff910a5cea3e90de82ad75cc16540%40%3Cdev.syncope.apache.org%3Ehttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6HKVPTJWZGUB4MH4AAOWMRJHRDBYFHGJ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/POPOGHJ5CVMUVCRQU7APBAN5IVZGZFDX/https://www.oracle.com/security-alerts/cpuapr2020.html
2018-07-03
Published