← back
CVE-2018-8036

CVE-2018-8036

EPSS 4.8%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 4.8%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
03 Jul 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →