Описание
Security update for python-PyPDF2
This update for python-PyPDF2 fixes the following issues:
Changes in python-PyPDF2:
- CVE-2026-40260: crafted PDF can lead to large memory usage (bsc#1262284)
Список пакетов
openSUSE Leap 16.0
python313-PyPDF2-2.11.1-bp160.6.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1262284
- SUSE CVE CVE-2026-40260 page
Описание
pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0.
Затронутые продукты
openSUSE Leap 16.0:python313-PyPDF2-2.11.1-bp160.6.1
Ссылки
- CVE-2026-40260
- SUSE Bug 1262284