CVE-2021-29421
01.04.2021, 20:15
models/metadata.py in the pikepdf package 1.3.0 through 2.9.2 for Python allows XXE when parsing XMP metadata entries.Enginsight
| Vendor | Product | Version |
|---|---|---|
| pikepdf_project | pikepdf | 1.3.0 ≤ 𝑥 ≤ 2.9.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References