CVE-2021-41561

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
20/12/2021
Last modified:
28/07/2025

Description

Improper Input Validation vulnerability in Parquet-MR of Apache Parquet allows an attacker to DoS by malicious Parquet files. This issue affects Apache Parquet-MR version 1.9.0 and later versions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:parquet_java:*:*:*:*:*:*:*:* 1.11.2 (excluding)
cpe:2.3:a:apache:parquet_java:*:*:*:*:*:*:*:* 1.12.0 (including) 1.12.2 (excluding)