Itext · Itext · CVE-2022-24197
**Name of the Vulnerable Software and Affected Versions**
iText version 7.1.17
**Description**
A stack-based buffer overflow was discovered in the component `ByteBuffer.append`, which allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.
**Recommendations**
For iText version 7.1.17, consider disabling the `ByteBuffer.append` component until a patch is available to prevent potential Denial of Service (DoS) attacks.