Количество 7
Количество 7
GHSA-m449-cwjh-6pw7
pypdf's LZWDecode streams be manipulated to exhaust RAM
CVE-2025-66019
pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0.
CVE-2025-66019
pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0.
CVE-2025-66019
pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0.
CVE-2025-66019
pypdf is a free and open-source pure-python PDF library. Prior to vers ...
BDU:2026-07343
Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с некорректной обработкой сильно сжатых входных данных, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260417-73-0022
Уязвимость python-PyPDF2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-m449-cwjh-6pw7 pypdf's LZWDecode streams be manipulated to exhaust RAM | 0% Низкий | 8 месяцев назад | ||
CVE-2025-66019 pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0. | 0% Низкий | 8 месяцев назад | ||
CVE-2025-66019 pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0. | CVSS3: 5.3 | 0% Низкий | 8 месяцев назад | |
CVE-2025-66019 pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content stream of a page using the LZWDecode filter. This issue has been patched in version 6.4.0. | 0% Низкий | 8 месяцев назад | ||
CVE-2025-66019 pypdf is a free and open-source pure-python PDF library. Prior to vers ... | 0% Низкий | 8 месяцев назад | ||
BDU:2026-07343 Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с некорректной обработкой сильно сжатых входных данных, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | 10 месяцев назад | |
ROS-20260417-73-0022 Уязвимость python-PyPDF2 | CVSS3: 7.5 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу