Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-12852

Опубликовано: 15 авг. 2017
Источник: debian
EPSS Низкий

Описание

The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-numpyfixed1:1.14.3-1package

Примечания

  • https://github.com/numpy/numpy/issues/9560#issuecomment-322395292

  • Negligible security impact

EPSS

Процентиль: 84%
0.02681
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.

CVSS3: 4
redhat
около 9 лет назад

The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.

CVSS3: 7.5
nvd
около 9 лет назад

The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.

suse-cvrf
почти 4 года назад

Security update for python-numpy

suse-cvrf
почти 9 лет назад

Initial release of python-numpy for HPC (v1.13.3, gcc)

EPSS

Процентиль: 84%
0.02681
Низкий