Описание
The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.13.1 (включая)
cpe:2.3:a:numpy:numpy:*:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.00808
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-835
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 8 лет назад
The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
CVSS3: 4
redhat
больше 8 лет назад
The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
CVSS3: 7.5
debian
больше 8 лет назад
The numpy.pad function in Numpy 1.13.1 and older versions is missing i ...
EPSS
Процентиль: 74%
0.00808
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-835