Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-27807
A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.0.22 and prior 2.0.x versions.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
55.4%
CVSS Severity
CVSS v3 Score
5.5
CVSS v2 Score
4.3
References
http://www.openwall.com/lists/oss-security/2021/03/19/9
https://lists.apache.org/thread.html/r043edc5dcf9199f7f882ed7906b41cb816753766e88b8792dbf319a9%40%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/r1218e60c32829f76943ecaca79237120c2ec1ab266459d711a578b50%40%3Cdev.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r1d268642f8b52456ee8f876b888b8ed7a9e9568c7770789f3ded7f9e%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r4717f902f8bc36d47b3fa978552a25e4ed3ddc2fffb52b94fbc4ab36%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r4cbc3f6981cd0a1a482531df9d44e4c42a7f63342a7ba78b7bff8a1b%40%3Cnotifications.james.apache.org%3E
https://lists.apache.org/thread.html/r54594251369e14c185da9662a5340a52afbbdf75d61c9c3a69c8f2e8%40%3Cdev.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r5c8e2125d18af184c80f7a986fbe47eaf0d30457cd450133adc235ac%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r6e067a6d83ccb6892d0ff867bd216704f21fb0b6a854dea34be04f12%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r7ee634c21816c69ce829d0c41f35afa2a53a99bdd3c7cce8644fdc0e%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r818058ff1e4b9f6bef4e5a2e74faff38cb3d3885c1e2db398bc55cfb%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r818058ff1e4b9f6bef4e5a2e74faff38cb3d3885c1e2db398bc55cfb%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r9ffe179385637b0b5cbdabd0246118005b4b8232909d2d14cd68ccd3%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/raa35746227f3f8d50fff1db9899524423a718f6f35cd39bd4769fa6c%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rc69140d894c6a9c67a8097a25656cce59b46a5620c354ceba10543c3%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/re1e35881482e07dc2be6058d9b44483457f36133cac67956686ad9b9%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2AVLKAHFMPH72TTP25INPZPGX5FODK3H/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6KDA2U4KL2N3XT3PM4ZJEBBA6JJIH2G4/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6PT72QOFDXLJ7PLTN66EMG5EHPTE7TFZ/
https://www.oracle.com//security-alerts/cpujul2021.html
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpuoct2021.html
http://www.openwall.com/lists/oss-security/2021/03/19/9
https://lists.apache.org/thread.html/r043edc5dcf9199f7f882ed7906b41cb816753766e88b8792dbf319a9%40%3Cannounce.apache.org%3E
https://lists.apache.org/thread.html/r1218e60c32829f76943ecaca79237120c2ec1ab266459d711a578b50%40%3Cdev.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r1d268642f8b52456ee8f876b888b8ed7a9e9568c7770789f3ded7f9e%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r4717f902f8bc36d47b3fa978552a25e4ed3ddc2fffb52b94fbc4ab36%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r4cbc3f6981cd0a1a482531df9d44e4c42a7f63342a7ba78b7bff8a1b%40%3Cnotifications.james.apache.org%3E
https://lists.apache.org/thread.html/r54594251369e14c185da9662a5340a52afbbdf75d61c9c3a69c8f2e8%40%3Cdev.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r5c8e2125d18af184c80f7a986fbe47eaf0d30457cd450133adc235ac%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r6e067a6d83ccb6892d0ff867bd216704f21fb0b6a854dea34be04f12%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r7ee634c21816c69ce829d0c41f35afa2a53a99bdd3c7cce8644fdc0e%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/r818058ff1e4b9f6bef4e5a2e74faff38cb3d3885c1e2db398bc55cfb%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r818058ff1e4b9f6bef4e5a2e74faff38cb3d3885c1e2db398bc55cfb%40%3Cusers.pdfbox.apache.org%3E
https://lists.apache.org/thread.html/r9ffe179385637b0b5cbdabd0246118005b4b8232909d2d14cd68ccd3%40%3Ccommits.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/raa35746227f3f8d50fff1db9899524423a718f6f35cd39bd4769fa6c%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/rc69140d894c6a9c67a8097a25656cce59b46a5620c354ceba10543c3%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.apache.org/thread.html/re1e35881482e07dc2be6058d9b44483457f36133cac67956686ad9b9%40%3Cnotifications.ofbiz.apache.org%3E
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2AVLKAHFMPH72TTP25INPZPGX5FODK3H/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6KDA2U4KL2N3XT3PM4ZJEBBA6JJIH2G4/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6PT72QOFDXLJ7PLTN66EMG5EHPTE7TFZ/
https://www.oracle.com//security-alerts/cpujul2021.html
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpuoct2021.html
Products affected by CVE-2021-27807
Apache
»
Pdfbox
»
Version:
2.0.0
cpe:2.3:a:apache:pdfbox:2.0.0
Apache
»
Pdfbox
»
Version:
2.0.1
cpe:2.3:a:apache:pdfbox:2.0.1
Apache
»
Pdfbox
»
Version:
2.0.10
cpe:2.3:a:apache:pdfbox:2.0.10
Apache
»
Pdfbox
»
Version:
2.0.11
cpe:2.3:a:apache:pdfbox:2.0.11
Apache
»
Pdfbox
»
Version:
2.0.14
cpe:2.3:a:apache:pdfbox:2.0.14
Apache
»
Pdfbox
»
Version:
2.0.15
cpe:2.3:a:apache:pdfbox:2.0.15
Apache
»
Pdfbox
»
Version:
2.0.16
cpe:2.3:a:apache:pdfbox:2.0.16
Apache
»
Pdfbox
»
Version:
2.0.17
cpe:2.3:a:apache:pdfbox:2.0.17
Apache
»
Pdfbox
»
Version:
2.0.18
cpe:2.3:a:apache:pdfbox:2.0.18
Apache
»
Pdfbox
»
Version:
2.0.19
cpe:2.3:a:apache:pdfbox:2.0.19
Apache
»
Pdfbox
»
Version:
2.0.2
cpe:2.3:a:apache:pdfbox:2.0.2
Apache
»
Pdfbox
»
Version:
2.0.20
cpe:2.3:a:apache:pdfbox:2.0.20
Apache
»
Pdfbox
»
Version:
2.0.21
cpe:2.3:a:apache:pdfbox:2.0.21
Apache
»
Pdfbox
»
Version:
2.0.22
cpe:2.3:a:apache:pdfbox:2.0.22
Apache
»
Pdfbox
»
Version:
2.0.3
cpe:2.3:a:apache:pdfbox:2.0.3
Apache
»
Pdfbox
»
Version:
2.0.4
cpe:2.3:a:apache:pdfbox:2.0.4
Apache
»
Pdfbox
»
Version:
2.0.5
cpe:2.3:a:apache:pdfbox:2.0.5
Apache
»
Pdfbox
»
Version:
2.0.6
cpe:2.3:a:apache:pdfbox:2.0.6
Apache
»
Pdfbox
»
Version:
2.0.7
cpe:2.3:a:apache:pdfbox:2.0.7
Apache
»
Pdfbox
»
Version:
2.0.8
cpe:2.3:a:apache:pdfbox:2.0.8
Apache
»
Pdfbox
»
Version:
2.0.9
cpe:2.3:a:apache:pdfbox:2.0.9
Oracle
»
Banking Trade Finance Process Management
»
Version:
14.2.0
cpe:2.3:a:oracle:banking_trade_finance_process_management:14.2.0
Oracle
»
Banking Trade Finance Process Management
»
Version:
14.3.0
cpe:2.3:a:oracle:banking_trade_finance_process_management:14.3.0
Oracle
»
Banking Trade Finance Process Management
»
Version:
14.5.0
cpe:2.3:a:oracle:banking_trade_finance_process_management:14.5.0
Oracle
»
Banking Treasury Management
»
Version:
14.5
cpe:2.3:a:oracle:banking_treasury_management:14.5
Oracle
»
Banking Virtual Account Management
»
Version:
14.2.0
cpe:2.3:a:oracle:banking_virtual_account_management:14.2.0
Oracle
»
Banking Virtual Account Management
»
Version:
14.3.0
cpe:2.3:a:oracle:banking_virtual_account_management:14.3.0
Oracle
»
Banking Virtual Account Management
»
Version:
14.5.0
cpe:2.3:a:oracle:banking_virtual_account_management:14.5.0
Oracle
»
Communications Session Report Manager
»
Version:
8.0.0
cpe:2.3:a:oracle:communications_session_report_manager:8.0.0
Oracle
»
Communications Session Report Manager
»
Version:
8.0.0.0
cpe:2.3:a:oracle:communications_session_report_manager:8.0.0.0
Oracle
»
Communications Session Report Manager
»
Version:
8.1.0
cpe:2.3:a:oracle:communications_session_report_manager:8.1.0
Oracle
»
Communications Session Report Manager
»
Version:
8.1.1
cpe:2.3:a:oracle:communications_session_report_manager:8.1.1
Oracle
»
Communications Session Report Manager
»
Version:
8.2.0
cpe:2.3:a:oracle:communications_session_report_manager:8.2.0
Oracle
»
Communications Session Report Manager
»
Version:
8.2.1
cpe:2.3:a:oracle:communications_session_report_manager:8.2.1
Oracle
»
Communications Session Report Manager
»
Version:
8.2.2
cpe:2.3:a:oracle:communications_session_report_manager:8.2.2
Oracle
»
Communications Session Report Manager
»
Version:
8.2.2.1
cpe:2.3:a:oracle:communications_session_report_manager:8.2.2.1
Oracle
»
Communications Session Report Manager
»
Version:
8.2.4.0
cpe:2.3:a:oracle:communications_session_report_manager:8.2.4.0
Oracle
»
Flexcube Universal Banking
»
Version:
14.0.0
cpe:2.3:a:oracle:flexcube_universal_banking:14.0.0
Oracle
»
Flexcube Universal Banking
»
Version:
14.1.0
cpe:2.3:a:oracle:flexcube_universal_banking:14.1.0
Oracle
»
Flexcube Universal Banking
»
Version:
14.2.0
cpe:2.3:a:oracle:flexcube_universal_banking:14.2.0
Oracle
»
Flexcube Universal Banking
»
Version:
14.3.0
cpe:2.3:a:oracle:flexcube_universal_banking:14.3.0
Oracle
»
Flexcube Universal Banking
»
Version:
14.5.0
cpe:2.3:a:oracle:flexcube_universal_banking:14.5.0
Oracle
»
Hyperion Financial Reporting
»
Version:
11.1.2.4
cpe:2.3:a:oracle:hyperion_financial_reporting:11.1.2.4
Oracle
»
Hyperion Financial Reporting
»
Version:
11.2.6.0
cpe:2.3:a:oracle:hyperion_financial_reporting:11.2.6.0
Oracle
»
Hyperion Infrastructure Technology
»
Version:
11.1.2.4
cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.1.2.4
Oracle
»
Hyperion Infrastructure Technology
»
Version:
11.1.2.6.0
cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.1.2.6.0
Oracle
»
Hyperion Infrastructure Technology
»
Version:
11.2.5.0
cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.2.5.0
Oracle
»
Hyperion Infrastructure Technology
»
Version:
11.2.6.0
cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.2.6.0
Oracle
»
Hyperion Infrastructure Technology
»
Version:
11.2.7.0
cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.2.7.0
Oracle
»
Outside In Technology
»
Version:
8.5.5
cpe:2.3:a:oracle:outside_in_technology:8.5.5
Oracle
»
Primavera Unifier
»
Version:
17.10
cpe:2.3:a:oracle:primavera_unifier:17.10
Oracle
»
Primavera Unifier
»
Version:
17.11
cpe:2.3:a:oracle:primavera_unifier:17.11
Oracle
»
Primavera Unifier
»
Version:
17.12
cpe:2.3:a:oracle:primavera_unifier:17.12
Oracle
»
Primavera Unifier
»
Version:
17.7
cpe:2.3:a:oracle:primavera_unifier:17.7
Oracle
»
Primavera Unifier
»
Version:
17.8
cpe:2.3:a:oracle:primavera_unifier:17.8
Oracle
»
Primavera Unifier
»
Version:
17.9
cpe:2.3:a:oracle:primavera_unifier:17.9
Oracle
»
Primavera Unifier
»
Version:
18.8
cpe:2.3:a:oracle:primavera_unifier:18.8
Oracle
»
Primavera Unifier
»
Version:
19.12
cpe:2.3:a:oracle:primavera_unifier:19.12
Oracle
»
Primavera Unifier
»
Version:
20.12
cpe:2.3:a:oracle:primavera_unifier:20.12
Oracle
»
Retail Customer Management And Segmentation Foundation
»
Version:
19.0
cpe:2.3:a:oracle:retail_customer_management_and_segmentation_foundation:19.0
Oracle
»
Retail Xstore Point Of Service
»
Version:
16.0.6
cpe:2.3:a:oracle:retail_xstore_point_of_service:16.0.6
Oracle
»
Retail Xstore Point Of Service
»
Version:
17.0.4
cpe:2.3:a:oracle:retail_xstore_point_of_service:17.0.4
Oracle
»
Retail Xstore Point Of Service
»
Version:
18.0.3
cpe:2.3:a:oracle:retail_xstore_point_of_service:18.0.3
Oracle
»
Retail Xstore Point Of Service
»
Version:
19.0.2
cpe:2.3:a:oracle:retail_xstore_point_of_service:19.0.2
Oracle
»
Retail Xstore Point Of Service
»
Version:
20.0.1
cpe:2.3:a:oracle:retail_xstore_point_of_service:20.0.1
Oracle
»
Webcenter Sites
»
Version:
12.2.1.3.0
cpe:2.3:a:oracle:webcenter_sites:12.2.1.3.0
Oracle
»
Webcenter Sites
»
Version:
12.2.1.4.0
cpe:2.3:a:oracle:webcenter_sites:12.2.1.4.0
Fedoraproject
»
Fedora
»
Version:
32
cpe:2.3:o:fedoraproject:fedora:32
Fedoraproject
»
Fedora
»
Version:
33
cpe:2.3:o:fedoraproject:fedora:33
Fedoraproject
»
Fedora
»
Version:
34
cpe:2.3:o:fedoraproject:fedora:34
Oracle
»
Communications Messaging Server
»
Version:
8.1
cpe:2.3:o:oracle:communications_messaging_server:8.1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved