Apache POI in versions prior to release 3.17 are vulnerable to Denial of Service Attacks: - Infinite Loops while parsing crafted WMF, EMF, MSG and macros (POI bugs 61338 and 61294) - Out of Memory Exceptions while parsing crafted DOC, PPT and XLS (POI bugs 52372 and 61295)
{ "nvd_published_at": "2018-01-29T17:29:00Z", "github_reviewed_at": "2020-11-06T18:56:32Z", "severity": "HIGH", "github_reviewed": true, "cwe_ids": [ "CWE-835" ] }