Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w8r-397f-prfh

Опубликовано: 20 апр. 2021
Источник: github
Github: Прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

Infinite Loop in Pygments

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.

Пакеты

Наименование

Pygments

pip
Затронутые версииВерсия исправления

>= 1.5, < 2.7.4

2.7.4

EPSS

Процентиль: 52%
0.00291
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.

CVSS3: 7.5
redhat
больше 4 лет назад

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.

CVSS3: 7.5
nvd
около 4 лет назад

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.

CVSS3: 7.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.5
debian
около 4 лет назад

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lea ...

EPSS

Процентиль: 52%
0.00291
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-835