MGASA-2015-0087

Source
https://advisories.mageia.org/MGASA-2015-0087.html
Import Source
https://advisories.mageia.org/MGASA-2015-0087.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0087
Upstream
Published
2015-02-26T08:26:53Z
Modified
2026-04-16T06:23:45.674659482Z
Summary
Updated apache-poi packages fix CVE-2014-9527
Details

Updated apache-poi packages fixes security vulnerability:

A denial of service flaw was found in the way the HSLFSlideShow class implementation in Apache POI handled certain PPT files. A remote attacker could submit a specially crafted PPT file that would cause Apache POI to hang indefinitely (CVE-2014-9527).

References
Credits

Affected packages

Mageia:4 / apache-poi

Package

Name
apache-poi
Purl
pkg:rpm/mageia/apache-poi?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.10.1-1.1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0087.json"