Описание
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| uriparser | unfixed | package | ||
| uriparser | no-dsa | trixie | package | |
| uriparser | no-dsa | bookworm | package | |
| uriparser | postponed | bullseye | package |
Примечания
https://github.com/uriparser/uriparser/issues/282
https://github.com/uriparser/uriparser/pull/284
https://github.com/uriparser/uriparser/commit/cd5565036645dbe104b5807bb64998db917cdf33 (uriparser-1.0.0)
https://github.com/uriparser/uriparser/commit/70eef664a5ffd5a0d05fd73bbc61d3e3dcbdf979 (uriparser-1.0.0)
https://github.com/uriparser/uriparser/commit/8044bd70c0dc92cfabef4c44793790b923971548 (uriparser-1.0.0)
EPSS
Связанные уязвимости
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.
EPSS