Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9130

Опубликовано: 08 дек. 2014
Источник: debian
EPSS Средний

Описание

scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vectors involving line-wrapping.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libyamlfixed0.1.6-3package
libyaml-libyaml-perlfixed0.41-6package
pyyamlfixed3.11-2package

Примечания

  • https://bitbucket.org/xi/libyaml/issue/10/wrapped-strings-cause-assert-failure

  • https://bitbucket.org/xi/libyaml/commits/2b9156756423e967cfd09a61d125d883fca6f4f2

  • for pyyaml: might be need to be removed here (no-CVE assigned) or separate CVE

  • for pyyaml: https://bitbucket.org/xi/pyyaml/commits/ddf211a41bb231c365fece5599b7e484e6dc33fc/raw/

EPSS

Процентиль: 98%
0.60753
Средний

Связанные уязвимости

ubuntu
больше 10 лет назад

scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vectors involving line-wrapping.

redhat
почти 11 лет назад

scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vectors involving line-wrapping.

nvd
больше 10 лет назад

scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vectors involving line-wrapping.

suse-cvrf
больше 10 лет назад

Security update for python-PyYAML

suse-cvrf
больше 10 лет назад

Security update for python-PyYAML

EPSS

Процентиль: 98%
0.60753
Средний