We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-46206



Description

An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the `strip_outline()` function enters infinite recursion

Reserved 2025-04-22 | Published 2025-08-04 | Updated 2025-08-04 | Assigner mitre

References

artifex.com

mupdf.com

github.com/Landw-hub/CVE-2025-46206

bugs.ghostscript.com/show_bug.cgi?id=708521

cgit.ghostscript.com/...e4d2201bb6df217e01c17396d36297abf9ac

cve.org (CVE-2025-46206)

nvd.nist.gov (CVE-2025-46206)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-46206

Support options

Helpdesk Chat, Email, Knowledgebase