cve-2018-1335
HIGH CVSS 8.8 csaf_redhat
Description
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
Timeline
- Published
- 2018-04-25 00:00 UTC
- Last Modified
- 2026-08-04
CVSS Details
CVSS details not available.
Affected Products
No product information available.
Weaknesses (CWE)
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"document": {
"aggregate_severity": {
"namespace": "https://access.redhat.com/security/updates/classification/",
"text": "Important"
},
"category": "csaf_vex",
"csaf_version": "2.0",
"distribution": {
"text": "Copyright © Red Hat, Inc. All rights reserved.",
"tlp": {
"label": "WHITE",
"url": "https://www.first.org/tlp/"
}
},
"lang": "en",
"notes": [
{
"category": "legal_disclaimer",
"text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
"title": "Terms of Use"
}
],
"publisher": {
"category": "vendor",
"contact_details": "https://access.redhat.com/security/team/contact/",
"issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
"name": "Red Hat Product Security",
"namespace": "https://www.redhat.com"
},
"references": [
{
"category": "self",
"summary": "Canonical URL",
"url": "https://security.access.redhat.com/data/csaf/v2/vex/2018/cve-2018-1335.json"
}
],
"title": "tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers",
"tracking": {
"current_release_date": "2026-08-04T18:32:43+00:00",
"generator": {
"date": "2026-08-04T18:32:43+00:00",
"engine": {
"name": "Red Hat SDEngine",
"version": "5.3.8"
}
},
"id": "CVE-2018-1335",
"initial_release_date": "2018-04-25T00:00:00+00:00",
"revision_history": [
{
"date": "2018-04-25T00:00:00+00:00",
"number": "1",
"summary": "Initial version"
},
{
"date": "2026-08-04T11:38:55+00:00",
"number": "2",
"summary": "Current version"
},
{
"date": "2026-08-04T18:32:43+00:00",
"number": "3",
"summary": "Last generated version"
}
],
"status": "final",
"version": "3"
}
},
"product_tree": {
"branches": [
{
"branches": [
{
"branches": [
{
"category": "product_name",
"name": "Red Hat BPM Suite 6",
"product": {
"name": "Red Hat BPM Suite 6",
"product_id": "red_hat_bpm_suite_6",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_enterprise_bpms_platform"
}
}
}
],
"category": "product_family",
"name": "Red Hat BPM Suite 6"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat Fuse 7",
"product": {
"name": "Red Hat Fuse 7",
"product_id": "red_hat_fuse_7",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_fuse:7"
}
}
}
],
"category": "product_family",
"name": "Red Hat Fuse 7"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat JBoss BRMS 5",
"product": {
"name": "Red Hat JBoss BRMS 5",
"product_id": "red_hat_jboss_brms_5",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_enterprise_brms_platform:5"
}
}
}
],
"category": "product_family",
"name": "Red Hat JBoss BRMS 5"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat JBoss BRMS 6",
"product": {
"name": "Red Hat JBoss BRMS 6",
"product_id": "red_hat_jboss_brms_6",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_enterprise_brms_platform:6"
}
}
}
],
"category": "product_family",
"name": "Red Hat JBoss BRMS 6"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat JBoss Fuse Integration Service 2",
"product": {
"name": "Red Hat JBoss Fuse Integration Service 2",
"product_id": "red_hat_jboss_fuse_integration_service_2",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:fuse_integration_services:2"
}
}
}
],
"category": "product_family",
"name": "Red Hat JBoss Fuse Integration Service 2"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat JBoss Fuse Service Works 6",
"product": {
"name": "Red Hat JBoss Fuse Service Works 6",
"product_id": "red_hat_jboss_fuse_service_works_6",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_fuse_service_works:6"
}
}
}
],
"category": "product_family",
"name": "Red Hat JBoss Fuse Service Works 6"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat Satellite 5",
"product": {
"name": "Red Hat Satellite 5",
"product_id": "red_hat_satellite_5",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:network_satellite:5"
}
}
}
],
"category": "product_family",
"name": "Red Hat Satellite 5"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat Software Collections",
"product": {
"name": "Red Hat Software Collections",
"product_id": "red_hat_software_collections",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:rhel_software_collections:3"
}
}
}
],
"category": "product_family",
"name": "Red Hat Software Collections"
},
{
"branches": [
{
"category": "product_name",
"name": "Red Hat JBoss Data Virtualization 6.4.8",
"product": {
"name": "Red Hat JBoss Data Virtualization 6.4.8",
"product_id": "Red Hat JBoss Data Virtualization 6.4.8",
"product_identification_helper": {
"cpe": "cpe:/a:redhat:jboss_data_virtualization:6.4"
}
}
}
],
"category": "product_family",
"name": "Red Hat JBoss Data Virtualization"
},
{
"category": "product_version",
"name": "tika-core",
"product": {
"name": "tika-core",
"product_id": "tika-core",
"product_identification_helper": {
"purl": "pkg:maven/org.apache.tika/tika-core"
}
}
},
{
"category": "product_version",
"name": "camel-tika",
"product": {
"name": "camel-tika",
"product_id": "camel-tika"
}
},
{
"category": "product_version",
"name": "tika.src",
"product": {
"name": "tika.src",
"product_id": "tika.src",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/tika?arch=src"
}
}
},
{
"category": "product_version",
"name": "rh-eclipse46-tika-parsers",
"product": {
"name": "rh-eclipse46-tika-parsers",
"product_id": "rh-eclipse46-tika-parsers",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/rh-eclipse46-tika-parsers"
}
}
},
{
"category": "product_version",
"name": "rh-eclipse46-tika.src",
"product": {
"name": "rh-eclipse46-tika.src",
"product_id": "rh-eclipse46-tika.src",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/rh-eclipse46-tika?arch=src"
}
}
},
{
"category": "product_version",
"name": "rh-eclipse46-tika-serialization",
"product": {
"name": "rh-eclipse46-tika-serialization",
"product_id": "rh-eclipse46-tika-serialization",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/rh-eclipse46-tika-serialization"
}
}
},
{
"category": "product_version",
"name": "rh-eclipse46-tika-javadoc",
"product": {
"name": "rh-eclipse46-tika-javadoc",
"product_id": "rh-eclipse46-tika-javadoc",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/rh-eclipse46-tika-javadoc"
}
}
},
{
"category": "product_version",
"name": "rh-eclipse46-tika-java7",
"product": {
"name": "rh-eclipse46-tika-java7",
"product_id": "rh-eclipse46-tika-java7",
"product_identification_helper": {
"purl": "pkg:rpm/redhat/rh-eclipse46-tika-java7"
}
}
}
],
"category": "vendor",
"name": "Red Hat"
}
],
"relationships": [
{
"category": "default_component_of",
"full_product_name": {
"name": "tika-core as a component of Red Hat BPM Suite 6",
"product_id": "red_hat_bpm_suite_6:tika-core"
},
"product_reference": "tika-core",
"relates_to_product_reference": "red_hat_bpm_suite_6"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "camel-tika as a component of Red Hat Fuse 7",
"product_id": "red_hat_fuse_7:camel-tika"
},
"product_reference": "camel-tika",
"relates_to_product_reference": "red_hat_fuse_7"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "tika-core as a component of Red Hat JBoss BRMS 5",
"product_id": "red_hat_jboss_brms_5:tika-core"
},
"product_reference": "tika-core",
"relates_to_product_reference": "red_hat_jboss_brms_5"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "tika-core as a component of Red Hat JBoss BRMS 6",
"product_id": "red_hat_jboss_brms_6:tika-core"
},
"product_reference": "tika-core",
"relates_to_product_reference": "red_hat_jboss_brms_6"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "tika-core as a component of Red Hat JBoss Fuse Integration Service 2",
"product_id": "red_hat_jboss_fuse_integration_service_2:tika-core"
},
"product_reference": "tika-core",
"relates_to_product_reference": "red_hat_jboss_fuse_integration_service_2"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "tika-core as a component of Red Hat JBoss Fuse Service Works 6",
"product_id": "red_hat_jboss_fuse_service_works_6:tika-core"
},
"product_reference": "tika-core",
"relates_to_product_reference": "red_hat_jboss_fuse_service_works_6"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "tika.src as a component of Red Hat Satellite 5",
"product_id": "red_hat_satellite_5:tika.src"
},
"product_reference": "tika.src",
"relates_to_product_reference": "red_hat_satellite_5"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "rh-eclipse46-tika-java7 as a component of Red Hat Software Collections",
"product_id": "red_hat_software_collections:rh-eclipse46-tika-java7"
},
"product_reference": "rh-eclipse46-tika-java7",
"relates_to_product_reference": "red_hat_software_collections"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "rh-eclipse46-tika-javadoc as a component of Red Hat Software Collections",
"product_id": "red_hat_software_collections:rh-eclipse46-tika-javadoc"
},
"product_reference": "rh-eclipse46-tika-javadoc",
"relates_to_product_reference": "red_hat_software_collections"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "rh-eclipse46-tika-parsers as a component of Red Hat Software Collections",
"product_id": "red_hat_software_collections:rh-eclipse46-tika-parsers"
},
"product_reference": "rh-eclipse46-tika-parsers",
"relates_to_product_reference": "red_hat_software_collections"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "rh-eclipse46-tika-serialization as a component of Red Hat Software Collections",
"product_id": "red_hat_software_collections:rh-eclipse46-tika-serialization"
},
"product_reference": "rh-eclipse46-tika-serialization",
"relates_to_product_reference": "red_hat_software_collections"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "rh-eclipse46-tika.src as a component of Red Hat Software Collections",
"product_id": "red_hat_software_collections:rh-eclipse46-tika.src"
},
"product_reference": "rh-eclipse46-tika.src",
"relates_to_product_reference": "red_hat_software_collections"
}
]
},
"vulnerabilities": [
{
"cve": "CVE-2018-1335",
"cwe": {
"id": "CWE-77",
"name": "Improper Neutralization of Special Elements used in a Command ('Command Injection')"
},
"discovery_date": "2018-04-27T00:00:00+00:00",
"flags": [
{
"label": "vulnerable_code_not_present",
"product_ids": [
"red_hat_bpm_suite_6:tika-core",
"red_hat_fuse_7:camel-tika",
"red_hat_jboss_brms_5:tika-core",
"red_hat_jboss_brms_6:tika-core",
"red_hat_jboss_fuse_integration_service_2:tika-core",
"red_hat_jboss_fuse_service_works_6:tika-core",
"red_hat_software_collections:rh-eclipse46-tika-java7",
"red_hat_software_collections:rh-eclipse46-tika-javadoc",
"red_hat_software_collections:rh-eclipse46-tika-parsers",
"red_hat_software_collections:rh-eclipse46-tika-serialization",
"red_hat_software_collections:rh-eclipse46-tika.src"
]
}
],
"ids": [
{
"system_name": "Red Hat Bugzilla ID",
"text": "1572416"
}
],
"notes": [
{
"category": "description",
"text": "From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.",
"title": "Vulnerability description"
},
{
"category": "summary",
"text": "tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers",
"title": "Vulnerability summary"
},
{
"category": "other",
"text": "This issue affects the versions of tika which is embedded in the nutch package as shipped with Red Hat Satellite 5. The tika server is not exposed, as such exploitation is difficult, Red Hat Product Security has rated this issue as having security impact of Low. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.",
"title": "Statement"
},
{
"category": "general",
"text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
"title": "CVSS score applicability"
}
],
"product_status": {
"fixed": [
"Red Hat JBoss Data Virtualization 6.4.8"
],
"known_affected": [
"red_hat_satellite_5:tika.src"
],
"known_not_affected": [
"red_hat_bpm_suite_6:tika-core",
"red_hat_fuse_7:camel-tika",
"red_hat_jboss_brms_5:tika-core",
"red_hat_jboss_brms_6:tika-core",
"red_hat_jboss_fuse_integration_service_2:tika-core",
"red_hat_jboss_fuse_service_works_6:tika-core",
"red_hat_software_collections:rh-eclipse46-tika-java7",
"red_hat_software_collections:rh-eclipse46-tika-javadoc",
"red_hat_software_collections:rh-eclipse46-tika-parsers",
"red_hat_software_collections:rh-eclipse46-tika-serialization",
"red_hat_software_collections:rh-eclipse46-tika.src"
]
},
"references": [
{
"category": "self",
"summary": "Canonical URL",
"url": "https://access.redhat.com/security/cve/CVE-2018-1335"
},
{
"category": "external",
"summary": "RHBZ#1572416",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1572416"
},
{
"category": "external",
"summary": "https://www.cve.org/CVERecord?id=CVE-2018-1335",
"url": "https://www.cve.org/CVERecord?id=CVE-2018-1335"
},
{
"category": "external",
"summary": "https://nvd.nist.gov/vuln/detail/CVE-2018-1335",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1335"
},
{
"category": "external",
"summary": "https://lists.apache.org/thread.html/b3ed4432380af767effd4c6f27665cc7b2686acccbefeb9f55851dca@%3Cdev.tika.apache.org%3E",
"url": "https://lists.apache.org/thread.html/b3ed4432380af767effd4c6f27665cc7b2686acccbefeb9f55851dca@%3Cdev.tika.apache.org%3E"
}
],
"release_date": "2018-04-25T00:00:00+00:00",
"remediations": [
{
"category": "vendor_fix",
"date": "2019-10-17T14:54:30+00:00",
"details": "Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on.\n\nThe References section of this erratum contains a download link (you must log in to download the update).",
"product_ids": [
"Red Hat JBoss Data Virtualization 6.4.8"
],
"url": "https://access.redhat.com/errata/RHSA-2019:3140"
},
{
"category": "no_fix_planned",
"details": "Will not fix",
"product_ids": [
"red_hat_satellite_5:tika.src"
]
}
],
"scores": [
{
"cvss_v3": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 8.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"version": "3.0"
},
"products": [
"Red Hat JBoss Data Virtualization 6.4.8",
"red_hat_bpm_suite_6:tika-core",
"red_hat_fuse_7:camel-tika",
"red_hat_jboss_brms_5:tika-core",
"red_hat_jboss_brms_6:tika-core",
"red_hat_jboss_fuse_integration_service_2:tika-core",
"red_hat_jboss_fuse_service_works_6:tika-core",
"red_hat_satellite_5:tika.src",
"red_hat_software_collections:rh-eclipse46-tika-java7",
"red_hat_software_collections:rh-eclipse46-tika-javadoc",
"red_hat_software_collections:rh-eclipse46-tika-parsers",
"red_hat_software_collections:rh-eclipse46-tika-serialization",
"red_hat_software_collections:rh-eclipse46-tika.src"
]
}
],
"threats": [
{
"category": "impact",
"details": "Important",
"product_ids": [
"Red Hat JBoss Data Virtualization 6.4.8",
"red_hat_bpm_suite_6:tika-core",
"red_hat_fuse_7:camel-tika",
"red_hat_jboss_brms_5:tika-core",
"red_hat_jboss_brms_6:tika-core",
"red_hat_jboss_fuse_integration_service_2:tika-core",
"red_hat_jboss_fuse_service_works_6:tika-core",
"red_hat_software_collections:rh-eclipse46-tika-java7",
"red_hat_software_collections:rh-eclipse46-tika-javadoc",
"red_hat_software_collections:rh-eclipse46-tika-parsers",
"red_hat_software_collections:rh-eclipse46-tika-serialization",
"red_hat_software_collections:rh-eclipse46-tika.src"
]
},
{
"category": "impact",
"details": "Low",
"product_ids": [
"red_hat_satellite_5:tika.src"
]
}
],
"title": "tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers"
}
]
}
Enrichment data
Aggregated bundle (all enrichments)