CVE-2021-33813
16.06.2021, 12:15
An XXE issue in SAXBuilder in JDOM through 2.0.6 allows attackers to cause a denial of service via a crafted HTTP request.Enginsight
| Vendor | Product | Version |
|---|---|---|
| jdom | jdom | 𝑥 ≤ 2.0.6 |
| apache | solr | 8.8.1 |
| apache | solr | 8.9 |
| apache | tika | 1.25 |
| debian | debian_linux | 9.0 |
| oracle | communications_messaging_server | 8.1 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| libjdom1-java |
| ||||||||||
| libjdom2-intellij-java |
| ||||||||||
| libjdom2-java |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libjdom1-java |
| ||||||||||||||||||||||||
| libjdom2-java |
|
References