Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-4340

Опубликовано: 30 апр. 2024
Источник: redhat
CVSS3: 7.5
EPSS Средний

Описание

Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.

A flaw was found in sqlparse. This issue occurs in a heavily nested list in sqlparse.parse(), where a recursion error may be triggered, which can lead to a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenShift Container Platform 4python-sqlparseWill not fix
Red Hat OpenStack Platform 16.1python-sqlparseNot affected
Red Hat OpenStack Platform 16.2python-sqlparseNot affected
Red Hat OpenStack Platform 18.0python-sqlparseAffected
Red Hat Satellite 6python-sqlparseAffected
Red Hat Ansible Automation Platform 2.4 for RHEL 8python3x-sqlparseFixedRHSA-2024:378110.06.2024
Red Hat Ansible Automation Platform 2.4 for RHEL 9python-sqlparseFixedRHSA-2024:378110.06.2024
Red Hat OpenStack Platform 17.1 for RHEL 8python-sqlparseFixedRHSA-2024:998621.11.2024
Red Hat OpenStack Platform 17.1 for RHEL 9python-sqlparseFixedRHSA-2024:998421.11.2024
RHUI 4 for RHEL 8python-sqlparseFixedRHSA-2025:133512.02.2025

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-674
https://bugzilla.redhat.com/show_bug.cgi?id=2278038sqlparse: parsing heavily nested list leads to denial of service

EPSS

Процентиль: 94%
0.12788
Средний

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.

CVSS3: 7.5
nvd
около 1 года назад

Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.

CVSS3: 7.5
debian
около 1 года назад

Passing a heavily nested list to sqlparse.parse() leads to a Denial of ...

suse-cvrf
около 1 года назад

Security update for python3-sqlparse

suse-cvrf
около 1 года назад

Security update for python-sqlparse

EPSS

Процентиль: 94%
0.12788
Средний

7.5 High

CVSS3