Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-33124

Опубликовано: 23 июн. 2022
Источник: redhat
CVSS3: 0

Описание

AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS). NOTE: multiple third parties dispute this issue because there is no example of a context in which denial of service would occur, and many common contexts have exception handing in the calling application

Отчет

Red Hat Product Security does not consider this to be a vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ansible Automation Platform 1.2aiohttpNot affected
Red Hat Ansible Automation Platform 1.2python-aiohttpNot affected
Red Hat Ansible Automation Platform 2python-aiohttpNot affected
Red Hat Ansible Tower 3aiohttpNot affected
Red Hat Satellite 6python-aiohttpNot affected
Red Hat Update Infrastructure 4 for Cloud Providerspython-aiohttpNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=2103107python-aiohttp: invalid IPv6 URL which can lead to a Denial of Service with exception raised

0 Low

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS). NOTE: multiple third parties dispute this issue because there is no example of a context in which denial of service would occur, and many common contexts have exception handing in the calling application

CVSS3: 5.5
nvd
больше 3 лет назад

AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS). NOTE: multiple third parties dispute this issue because there is no example of a context in which denial of service would occur, and many common contexts have exception handing in the calling application

CVSS3: 5.5
debian
больше 3 лет назад

AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, whi ...

CVSS3: 5.5
github
больше 3 лет назад

Withdrawn: Denial of Service in aiohttp

0 Low

CVSS3