CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects Apache, Java. It may be remotely exploitable. It may lead to a denial-of-service condition.
CVE
CVE-2012-0213
Severity
MEDIUM
CVSS
5
EPSS
7.50%
Apache Java
Original NVD Description
The UnhandledDataStructure function in hwpf/model/UnhandledDataStructure.java in Apache POI 3.8 and earlier allows remote attackers to cause a denial of service (OutOfMemoryError exception and possibly JVM destabilization) via a crafted length value in a Channel Definition Format (CDF) or Compound File Binary Format (CFBF) document.