Loop with Unreachable Exit Condition ('Infinite Loop') Affecting libitext5-java package, versions <5.5.13.3-4
Threat Intelligence
EPSS
0.09% (39th
percentile)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-DEBIANUNSTABLE-LIBITEXT5JAVA-5805275
- published 11 Sep 2022
- disclosed 9 Sep 2022
Introduced: 9 Sep 2022
CVE-2021-37819 Open this link in a new tabHow to fix?
Upgrade Debian:unstable libitext5-java to version 5.5.13.3-4 or higher.
NVD Description
Note: Versions mentioned in the description apply only to the upstream libitext5-java package and not the libitext5-java package as distributed by Debian.
See How to fix? for Debian:unstable relevant fixed versions and status.
PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java.
CVSS Scores
version 3.1