Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-39mj-fpg2-3jrg

Опубликовано: 24 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

StackStorm st2 Infinite Loop Condition

StackStorm before 3.4.1, in some situations, has an infinite loop that consumes all available memory and disk space. This can occur if Python 3.x is used, the locale is not utf-8, and there is an attempt to log Unicode data (from an action or rule name).

Пакеты

Наименование

st2client

pip
Затронутые версииВерсия исправления

< 3.4.1

3.4.1

EPSS

Процентиль: 70%
0.00672
Низкий

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

StackStorm before 3.4.1, in some situations, has an infinite loop that consumes all available memory and disk space. This can occur if Python 3.x is used, the locale is not utf-8, and there is an attempt to log Unicode data (from an action or rule name).

EPSS

Процентиль: 70%
0.00672
Низкий

7.5 High

CVSS3

Дефекты

CWE-835