﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
15176	PDFBOX (used by fop) 2.0.24	ken@…	Douglas R. Reno	"From the oss-security list:
Description:

A carefully crafted PDF file can trigger an OutOfMemory-Exception while
loading the file. This issue affects Apache PDFBox version 2.0.23 and prior
2.0.x versions.

This issue is being tracked as PDFBOX-5177

Mitigation:

This issue was fixed in 2.0.24. All users are recommended to upgrade to Apache
PDFBox 2.0.24

Credit:

Apache PDFBox would like to thank Chaoyuan Peng for reporting this issue

References:
[https://lists.apache.org/thread.html/ra2ab0ce69ce8aaff0773b8c1036438387ce004c2afc6f066626e205e%40%3Cusers.pdfbox.apache.org%3E]

That shows it is CVE-2021-31812

Although we do not list pdfbox in our index, 2.0.23 is a required download on the fop page.
"	enhancement	closed	elevated	11.0	BOOK	git	medium	fixed		
