Количество 9
Количество 9
BDU:2026-14095
Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с ошибками при обработке xml-сущностей, позволяющая нарушителю вызвать отказ в обслуживании
CVE-2026-40260
pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0.
CVE-2026-40260
pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0.
CVE-2026-40260
pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0.
CVE-2026-40260
pypdf is a free and open-source pure-python PDF library. In versions p ...
openSUSE-SU-2026:20598-1
Security update for python-PyPDF2
ROS-20260728-80-0022
Уязвимость python-PyPDF2
ROS-20260728-73-0018
Уязвимость python-PyPDF2
GHSA-3crg-w4f6-42mx
pypdf: Manipulated XMP metadata entity declarations can exhaust RAM
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-14095 Уязвимость библиотеки Python для работы с PDF файлами PyPDF, связанная с ошибками при обработке xml-сущностей, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-40260 pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-40260 pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0. | CVSS3: 6.5 | 0% Низкий | 5 месяцев назад | |
CVE-2026-40260 pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large memory usage. This requires parsing the XMP metadata. This issue has been fixed in version 6.10.0. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-40260 pypdf is a free and open-source pure-python PDF library. In versions p ... | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
openSUSE-SU-2026:20598-1 Security update for python-PyPDF2 | 0% Низкий | 5 месяцев назад | ||
ROS-20260728-80-0022 Уязвимость python-PyPDF2 | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
ROS-20260728-73-0018 Уязвимость python-PyPDF2 | CVSS3: 5.3 | 0% Низкий | около 2 месяцев назад | |
GHSA-3crg-w4f6-42mx pypdf: Manipulated XMP metadata entity declarations can exhaust RAM | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу