Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-11972

Опубликовано: 28 июн. 2026
Источник: msrc
EPSS Низкий

Описание

tarfile opened in streaming mode mishandles EOF

EPSS

Процентиль: 36%
0.00433
Низкий

Связанные уязвимости

ubuntu
около 2 месяцев назад

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

CVSS3: 6.5
redhat
около 2 месяцев назад

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

nvd
около 2 месяцев назад

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

debian
около 2 месяцев назад

When using the "tarfile" module with a file opened in "streaming mode" ...

github
около 2 месяцев назад

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive could be parsed in an infinite loop.

EPSS

Процентиль: 36%
0.00433
Низкий