#VU116637 Uncontrolled Recursion in Poppler - CVE-2025-43718
Published: October 6, 2025
Poppler
Freedesktop.org
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to uncontrolled recursion when handling deeply nested structures within the metadata (such as GTS_PDFEVersion) of a PDF document. A remote attacker can pass a specially crafted PDF document to the application and perform a denial of service (DoS) attack.