Описание
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally)
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | numpy | Out of support scope | ||
Red Hat Enterprise Linux 7 | numpy | Out of support scope | ||
Red Hat Enterprise Linux 8 | inkscape:flatpak/numpy | Will not fix | ||
Red Hat Enterprise Linux 8 | numpy | Will not fix | ||
Red Hat Enterprise Linux 8 | python27:2.7/numpy | Will not fix | ||
Red Hat Enterprise Linux 8 | python38:3.8/numpy | Will not fix | ||
Red Hat Enterprise Linux 8 | python39:3.9/numpy | Will not fix | ||
Red Hat Enterprise Linux 9 | numpy | Not affected | ||
Red Hat OpenStack Platform 13 (Queens) | numpy | Out of support scope | ||
Red Hat Software Collections | python27-numpy | Will not fix |
Показывать по
Дополнительная информация
Статус:
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
** DISPUTED ** Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally).
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally)
Buffer overflow in the array_from_pyobj function of fortranobject.c in ...
Buffer Copy without Checking Size of Input in NumPy
EPSS
5.5 Medium
CVSS3