Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-62708

Опубликовано: 22 окт. 2025
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

pypdf is a free and open-source pure-python PDF library. Prior to version 6.1.3, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the content stream of a page using the LZWDecode filter. This has been fixed in pypdf version 6.1.3.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:pypdf_project:pypdf:*:*:*:*:*:*:*:*
Версия до 6.1.3 (исключая)

EPSS

Процентиль: 22%
0.00072
Низкий

7.5 High

CVSS3

Дефекты

CWE-409

Связанные уязвимости

CVSS3: 7.5
ubuntu
6 месяцев назад

pypdf is a free and open-source pure-python PDF library. Prior to version 6.1.3, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the content stream of a page using the LZWDecode filter. This has been fixed in pypdf version 6.1.3.

CVSS3: 5.3
redhat
6 месяцев назад

pypdf is a free and open-source pure-python PDF library. Prior to version 6.1.3, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the content stream of a page using the LZWDecode filter. This has been fixed in pypdf version 6.1.3.

CVSS3: 7.5
debian
6 месяцев назад

pypdf is a free and open-source pure-python PDF library. Prior to vers ...

github
6 месяцев назад

pypdf can exhaust RAM via manipulated LZWDecode streams

EPSS

Процентиль: 22%
0.00072
Низкий

7.5 High

CVSS3

Дефекты

CWE-409