{"id":"CVE-2026-102994","aliases":["GHSA-5jq2-8x83-x246","PYSEC-2026-4153"],"url":"https://o3.security/vulnerability/CVE-2026-102994","summary":"pypdf: Possible long runtimes/large memory usage when parsing indirect objects","details":"pypdf is a free and open-source pure-python PDF library. Prior to 6.18.0, a crafted PDF containing indirect-object identifiers or generation-number tokens that continue for a long time without whitespace can cause pypdf/_reader.py and pypdf/generic/_base.py to scan excessive input through read_until_whitespace, resulting in long runtimes and application unavailability. This issue is fixed in version 6.18.0.","published":"2026-09-30T19:57:37.810Z","modified":"2026-10-02T03:47:25.970189948Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"PyPI","name":"pypdf","fixedVersion":"6.18.0"}],"fix":{"url":"https://github.com/py-pdf/pypdf/commit/82501d2993c6387833c4949d205caeb188f8bb9e","label":"py-pdf/pypdf@82501d2"},"references":[{"type":"WEB","url":"https://github.com/py-pdf/pypdf/releases/tag/6.18.0"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/102xxx/CVE-2026-102994.json"},{"type":"ADVISORY","url":"https://github.com/py-pdf/pypdf/security/advisories/GHSA-5jq2-8x83-x246"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-102994"},{"type":"FIX","url":"https://github.com/py-pdf/pypdf/commit/82501d2993c6387833c4949d205caeb188f8bb9e"},{"type":"FIX","url":"https://github.com/py-pdf/pypdf/pull/4055"},{"type":"PACKAGE","url":"https://github.com/py-pdf/pypdf"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-10-02T03:47:25.970189948Z"}}