CVE-2014-9527: Apache Poi
Medium severity, CVSS 5.0. EPSS: 6.6% chance of exploitation in the next 30 days.
HSLFSlideShow in Apache POI before 3.11 allows remote attackers to cause a denial of service (infinite loop and deadlock) via a crafted PPT file.
Affected products
- Apache Poi: up to and including 3.11
- Fedoraproject Fedora: version 20 only
Published 2015-01-06. Last modified 2026-06-17.