PyPDF2@2.10.5 vulnerabilities
A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files
-
latest version
3.0.1
-
first published
11 years ago
-
latest version published
2 years ago
-
licenses detected
- [1.27.4,2.11.2)
Direct Vulnerabilities
Known vulnerabilities in the PyPDF2 package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
PyPDF2 is an A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files Affected versions of this package are vulnerable to Infinite loop when reading malformed objects. Exploiting this vulnerability is possible by sending a crafted PDF and results in blocking the current process and can utilize a single core of the CPU by 100%. How to fix Infinite loop? Upgrade |
[2.10.5,2.10.6)
|
PyPDF2 is an A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker who uses this vulnerability can craft a PDF which leads to an infinite loop if How to fix Denial of Service (DoS)? There is no fixed version for |
[0,)
|
PyPDF2 is an A pure-python PDF library capable of splitting, merging, cropping, and transforming PDF files Affected versions of this package are vulnerable to Denial of Service (DoS) due to invalid object. Exploiting this vulnerability is possible when reading the metadata. How to fix Denial of Service (DoS)? Upgrade |
[,2.10.6)
|