Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-10735

Опубликовано: 09 сент. 2022
Источник: ubuntu
Приоритет: negligible
CVSS3: 7.5

Описание

A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.

РелизСтатусПримечание
bionic

DNE

esm-infra/focal

DNE

focal

DNE

jammy

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

ignored

change too intrusive
esm-apps/focal

ignored

change too intrusive
esm-apps/jammy

ignored

change too intrusive
esm-infra-legacy/trusty

ignored

change too intrusive
esm-infra/bionic

ignored

change too intrusive
esm-infra/xenial

ignored

change too intrusive
focal

ignored

end of standard support, was ignored [change too intrusive]
jammy

ignored

change too intrusive
kinetic

ignored

end of life, was ignored [change too intrusive]

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

ignored

change too intrusive
esm-infra/focal

DNE

focal

DNE

jammy

ignored

change too intrusive
kinetic

ignored

end of life, was ignored [change too intrusive]
trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

DNE

esm-infra-legacy/trusty

ignored

change too intrusive
esm-infra/focal

DNE

focal

DNE

jammy

DNE

trusty

ignored

end of standard support
trusty/esm

ignored

end of ESM support, was ignored [change too intrusive]
upstream

needs-triage

vivid/stable-phone-overlay

ignored

end of life
vivid/ubuntu-core

ignored

end of life

Показывать по

РелизСтатусПримечание
bionic

DNE

esm-infra-legacy/trusty

ignored

change too intrusive
esm-infra/focal

DNE

esm-infra/xenial

ignored

change too intrusive
focal

DNE

jammy

DNE

trusty

ignored

end of standard support
trusty/esm

ignored

end of ESM support, was ignored [change too intrusive]
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
esm-infra/bionic

ignored

change too intrusive
esm-infra/focal

DNE

focal

DNE

jammy

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
esm-apps/bionic

ignored

change too intrusive
esm-infra/focal

DNE

focal

DNE

jammy

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
esm-apps/bionic

ignored

change too intrusive
esm-infra/focal

ignored

change too intrusive
focal

ignored

end of standard support, was ignored [change too intrusive]
jammy

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

DNE

esm-apps/focal

ignored

change too intrusive
focal

ignored

end of standard support, was ignored [change too intrusive]
jammy

DNE

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 3 года назад

A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
nvd
почти 3 года назад

A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
почти 3 года назад

A flaw was found in python. In algorithms with quadratic time complexi ...

CVSS3: 7.5
github
почти 3 года назад

A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.

7.5 High

CVSS3

Уязвимость CVE-2020-10735