Логотип exploitDog
bind:CVE-2023-36810
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-36810

Количество 5

Количество 5

ubuntu логотип

CVE-2023-36810

больше 2 лет назад

pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. An attacker who uses this vulnerability can craft a PDF which leads to unexpected long runtime. This quadratic runtime blocks the current process and can utilize a single core of the CPU by 100%. It does not affect memory usage. This issue has been addressed in PR 808 and versions from 1.27.9 include this fix. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.2
EPSS: Низкий
nvd логотип

CVE-2023-36810

больше 2 лет назад

pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. An attacker who uses this vulnerability can craft a PDF which leads to unexpected long runtime. This quadratic runtime blocks the current process and can utilize a single core of the CPU by 100%. It does not affect memory usage. This issue has been addressed in PR 808 and versions from 1.27.9 include this fix. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.2
EPSS: Низкий
debian логотип

CVE-2023-36810

больше 2 лет назад

pypdf is a pure-python PDF library capable of splitting, merging, crop ...

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-jrm6-h9cq-8gqw

больше 2 лет назад

PyPDF2 quadratic runtime with malformed PDF missing xref marker

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2023-07658

около 5 лет назад

Уязвимость библиотеки для обработки PDF PyPDF2, связанная с алгоритмической сложностью, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-36810

pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. An attacker who uses this vulnerability can craft a PDF which leads to unexpected long runtime. This quadratic runtime blocks the current process and can utilize a single core of the CPU by 100%. It does not affect memory usage. This issue has been addressed in PR 808 and versions from 1.27.9 include this fix. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-36810

pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. An attacker who uses this vulnerability can craft a PDF which leads to unexpected long runtime. This quadratic runtime blocks the current process and can utilize a single core of the CPU by 100%. It does not affect memory usage. This issue has been addressed in PR 808 and versions from 1.27.9 include this fix. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-36810

pypdf is a pure-python PDF library capable of splitting, merging, crop ...

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
github логотип
GHSA-jrm6-h9cq-8gqw

PyPDF2 quadratic runtime with malformed PDF missing xref marker

CVSS3: 6.2
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-07658

Уязвимость библиотеки для обработки PDF PyPDF2, связанная с алгоритмической сложностью, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
около 5 лет назад

Уязвимостей на страницу