Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x58j-j539-w8mv

Опубликовано: 24 окт. 2022
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Duplicate Advisory: Improper Restriction of XML External Entity Reference in pikepdf

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-29421, GHSA-ccgm-3xw4-h5p8. Reason: This candidate is a duplicate of CVE-2021-29421. Notes: All CVE users should reference CVE-2021-29421 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

Пакеты

Наименование

pikepdf

pip
Затронутые версииВерсия исправления

>= 1.2.0, < 2.10.0

2.10.0

9.8 Critical

CVSS3

Дефекты

CWE-611

Связанные уязвимости

ubuntu
больше 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-29421. Reason: This candidate is a duplicate of CVE-2021-29421. Notes: All CVE users should reference CVE-2021-29421 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

nvd
больше 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-29421. Reason: This candidate is a duplicate of CVE-2021-29421. Notes: All CVE users should reference CVE-2021-29421 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

9.8 Critical

CVSS3

Дефекты

CWE-611