Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 31 Aug 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | pypdf is a free and open-source pure-python PDF library. Prior to 6.15.0, an attacker can craft a PDF that causes long runtimes when the pypdf/_utils.py function read_until_whitespace reads a stream containing a long run of bytes without whitespace. The function repeatedly performs immutable bytes concatenation in a one-byte loop, causing quadratic processing cost for the long non-whitespace input. This issue is fixed in version 6.15.0. | |
| Title | pypdf: Inefficient handling of non-whitespace inputs in read_until_whitespace | |
| Weaknesses | CWE-407 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-08-31T21:41:10.272Z
Reserved: 2026-08-28T22:00:43.512Z
Link: CVE-2026-82398
No data.
Status : Received
Published: 2026-08-31T22:17:23.083
Modified: 2026-08-31T22:17:23.083
Link: CVE-2026-82398
No data.
OpenCVE Enrichment
Updated: 2026-08-31T22:30:06Z