Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mmm5-wgvp-wp8r

Опубликовано: 03 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

There is a MEDIUM severity vulnerability affecting CPython.

Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.

There is a MEDIUM severity vulnerability affecting CPython.

Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.

EPSS

Процентиль: 87%
0.03187
Низкий

7.5 High

CVSS3

Дефекты

CWE-1333

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.

CVSS3: 7.5
redhat
около 1 года назад

There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.

CVSS3: 7.5
nvd
около 1 года назад

There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.

CVSS3: 7.5
msrc
около 1 года назад

Regular-expression DoS when parsing TarFile headers

CVSS3: 7.5
debian
около 1 года назад

There is a MEDIUM severity vulnerability affecting CPython. Regul ...

EPSS

Процентиль: 87%
0.03187
Низкий

7.5 High

CVSS3

Дефекты

CWE-1333