Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-9979

Опубликовано: 15 окт. 2024
Источник: debian

Описание

A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing from weak Python references.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rust-pyo3fixed0.22.5-1package
rust-pyo3not-affectedbookwormpackage

Примечания

  • https://github.com/PyO3/pyo3/pull/4590

  • https://rustsec.org/advisories/RUSTSEC-2024-0378.html

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 1 года назад

A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing from weak Python references.

CVSS3: 5.3
redhat
около 1 года назад

A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing from weak Python references.

CVSS3: 5.3
nvd
около 1 года назад

A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing from weak Python references.

CVSS3: 5.3
github
около 1 года назад

PyO3 has a risk of use-after-free in `borrowed` reads from Python weak references