imPC@ndo IT

Tracker / CVE-2020-1950

CVE-2020-1950

Medium 5.5

A carefully crafted or corrupt PSD file can cause excessive memory usage in Apache Tika's PSDParser in versions 1.0-1.23.

Affected products and versions

apache tika · 1.0 → 1.23
canonical ubuntu_linux
debian debian_linux
oracle business_process_management_suite
oracle communications_messaging_server
oracle flexcube_private_banking

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References