Resource exhaustion in PyPDF - #VU141290
Published: August 7, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause excessive memory consumption.
The vulnerability exists due to uncontrolled resource consumption in the /ToUnicode stream parser when parsing a font /ToUnicode entry with unusually large values. A remote attacker can supply a specially crafted PDF to cause excessive memory consumption.
This can occur during text extraction.