Search CVE reports
1 – 10 of 42 results
pypdf is a free and open-source pure-python PDF library. Prior to 6.15.0, a crafted PDF can cause large memory consumption when pypdf/_cmap.py function parse_bfrange parses unusually large source-code or destination-string tokens...
1 affected package
pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
pypdf is a free and open-source pure-python PDF library. Prior to 6.15.0, a crafted PDF can cause long runtimes and large memory consumption when pypdf/_font.py function Font._collect_cid_character_widths expands unusually large...
1 affected package
pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
pypdf is a free and open-source pure-python PDF library. Prior to 6.14.1, an attacker can craft a PDF with a page content stream containing a not terminated inline image, causing an infinite loop during inline image end marker...
2 affected packages
pypdf, pypdf2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
pypdf is a free and open-source pure-python PDF library. Prior to 6.14.2, an attacker can craft a PDF with a page content stream containing a not terminated inline image that uses the ASCII85 or ASCIIHex filters, causing an...
2 affected packages
pypdf, pypdf2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with declared image size values that are much too large compared to the actual data, causing large memory usage in pypdf image...
2 affected packages
pypdf, pypdf2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with repeated malformed cross-reference streams that cause pypdf to spend long runtimes recovering broken cross-reference table...
2 affected packages
pypdf, pypdf2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
pypdf is a free and open-source pure-python PDF library. Prior to 6.13.3, a maliciously crafted PDF can cause DoS. An attacker who uses this vulnerability can craft a PDF which leads to large memory usage,...
1 affected package
pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
pypdf is a free and open-source pure-python PDF library. Prior to 6.13.1, an attacker who uses this vulnerability can craft a PDF which leads to an infinite loop. This requires merging a file with threads/articles into a writer....
3 affected packages
pypdf, pypdf2, python-pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| python-pypdf | Not in release | Not in release | Not in release | — | — |
pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this vulnerability can craft a PDF which leads to an infinite loop. This requires merging a file with outlines into a writer. This...
3 affected packages
pypdf, pypdf2, python-pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| python-pypdf | Not in release | Not in release | Not in release | — | — |
pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this vulnerability can craft a PDF which leads to an infinite loop. This requires extracting the text in layout mode....
3 affected packages
pypdf, pypdf2, python-pypdf
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| pypdf | Needs evaluation | Needs evaluation | Not in release | — | — |
| pypdf2 | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| python-pypdf | Not in release | Not in release | Not in release | — | — |