Логотип exploitDog
bind:CVE-2023-36464
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-36464

Количество 6

Количество 6

ubuntu логотип

CVE-2023-36464

больше 2 лет назад

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
EPSS: Низкий
redhat логотип

CVE-2023-36464

больше 2 лет назад

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
EPSS: Низкий
nvd логотип

CVE-2023-36464

больше 2 лет назад

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
EPSS: Низкий
debian логотип

CVE-2023-36464

больше 2 лет назад

pypdf is an open source, pure-python PDF library. In affected versions ...

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-4vvm-4w3v-6mr8

больше 2 лет назад

pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2023-07657

больше 3 лет назад

Уязвимость библиотек Python для работы с PDF файлами PyPDF и PyPDF2, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-36464

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2023-36464

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-36464

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such a PDF. This issue was introduced in pull request #969 and resolved in pull request #1828. Users are advised to upgrade. Users unable to upgrade may modify the line `while peek not in (b"\r", b"\n")` in `pypdf/generic/_data_structures.py` to `while peek not in (b"\r", b"\n", b"")`.

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-36464

pypdf is an open source, pure-python PDF library. In affected versions ...

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4vvm-4w3v-6mr8

pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-07657

Уязвимость библиотек Python для работы с PDF файлами PyPDF и PyPDF2, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу