Description
MetadataExtractor 2.1.0 allows stack consumption.
Remediation
References
https://github.com/drewnoakes/metadata-extractor-dotnet/pull/190
https://lists.apache.org/thread.html/r204ba2a9ea750f38d789d2bb429cc0925ad6133deea7cbc3001d96b5%40%3Csolr-user.lucene.apache.org%3E
Related Vulnerabilities
CVE-2019-17563 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2020-7746 Vulnerability in npm package chart.js
CVE-2022-24728 Vulnerability in npm package ckeditor4
CVE-2021-4264 Vulnerability in maven package org.webjars:dustjs-linkedin
CVE-2022-31139 Vulnerability in maven package io.github.karlatemp:unsafe-accessor