Infinite loop in PyPDF - #VU133910
Published: June 8, 2026
PyPDF
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an infinite loop in font retrieval for layout-mode text extraction when processing a crafted PDF during text extraction in layout mode. A remote attacker can supply a specially crafted PDF to cause a denial of service.
Exploitation requires the application to extract text in layout mode.