﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
14805	pdfbox-2.0.23 and fontbox-2.0.23 (CVE-2021-27807 CVE-2021-27906)	Douglas R. Reno	Douglas R. Reno	"New point versions of supplemental JARs for fop.

Security information:

'''CVE-2021-27807'''

{{{
[oss-security] CVE-2021-27807: Apache PDFBox: A carefully crafted PDF file can trigger an infinite loop while loading the file.

Description:

A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox Apache PDFBox version 2.0.22 and prior 2.0.x versions.

Credit:

Apache PDFBox would like to thank Fabian Meumertzheim for reporting this issue
}}}

'''CVE-2021-27906'''

{{{
[oss-security] CVE-2021-27906: Apache PDFBox: A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file


Description:

A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox Apache PDFBox version 2.0.22 and prior 2.0.x versions.

This issue is being tracked as PDFBOX-5112

Credit:

Apache PDFBox would like to thank Fabian Meumertzheim for reporting this issue
}}}
"	enhancement	closed	elevated	11.0	BOOK	SVN	medium	fixed		
