CVE-2025-46206 Information

Description

An issue in Artifex mupdf 1.25.6 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the mutool clean utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure the strip_outline() function enters infinite recursion

Reference

http://artifex.com http://mupdf.com https://bugs.ghostscript.com/show_bug.cgi?id=708521 https://cgit.ghostscript.com/cgi-bin/cgit.cgi/mupdf.git/commit/?id=0ec7e4d2201bb6df217e01c17396d36297abf9ac https://github.com/Landw-hub/CVE-2025-46206

CNNVD-202508-242 (Published: 2025-08-04)

Share on: