CVE-2026-27025 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

pypdf is a free and open-source pure-python PDF library. Prior to 6.7.1, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes an…
Medium CVSS: 6.9

CVE-2026-27025

pypdf is a free and open-source pure-python PDF library. Prior to 6.7.1, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes and large memory consumption. This requires parsing the /ToUnicode entry of a font with unusually large values, for example during text extraction. This vulnerability is fixed in 6.7.1.
Vendor
Pypdf Project
Product
Pypdf
CWE
CWE-834
Yayın Tarihi
2026-02-20 22:16:28
Güncelleme
2026-02-24 15:16:48
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar