VYPR
Unrated severityNVD Advisory· Published Aug 4, 2025· Updated Aug 5, 2025

CVE-2025-46206

CVE-2025-46206

Description

An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the mutool clean utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the strip_outline() function enters infinite recursion

Affected products

2
  • Artifex/mupdfdescription
  • Artifex/Mupdfllm-fuzzy
    Range: <=1.25.6, <=1.25.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.