{"data":{"id":"5e03a772-7394-489b-b36d-c84fe1c6a075","title":"GHSA-f4ch-vxwc-3p2m: Duplicate Advisory:  Docling: METS-GBS archive member limit enforced after full member enumeration (memory exhaustion during format detection)","summary":"This advisory was withdrawn as a duplicate of GHSA-3cr3-8m4c-fpxw and is kept for external references. The original description says Docling from 2.45.0 through 2.131.0 calls tarfile.TarFile.getmembers() in the METS-GBS format detection and backend before enforcing max_member_count, so a small gzip-compressed tar with a very large number of empty members can consume memory proportional to the declared member count. The flaw is a residual weakness in the protection added for CVE-2026-44018.","solution":"Fixed in 2.131.0.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-f4ch-vxwc-3p2m","publishedAt":"2026-10-06T00:32:49.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":"medium","severity":"medium","attackType":["denial_of_service"],"issueType":"vulnerability","affectedPackages":["docling@>= 2.45.0, < 2.131.0 (fixed: 2.131.0)"],"affectedPackageNames":["docling"],"affectedVendors":[],"affectedVendorsRaw":["Docling"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"epssCheckedAt":null,"kevDateAdded":null,"advisoryAliases":["GHSA-f4ch-vxwc-3p2m"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":true,"disclosureDate":"2026-10-06T00:32:49.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["availability"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}