Описание
** DISPUTED ** Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally).
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1:1.24.1-2 |
esm-infra/focal | not-affected | 1:1.17.4-5ubuntu3.1 |
focal | released | 1:1.17.4-5ubuntu3.1 |
hirsute | ignored | end of life |
impish | ignored | end of life |
jammy | released | 1:1.21.5-1ubuntu22.04.1 |
kinetic | released | 1:1.21.5-1ubuntu22.10.1 |
lunar | not-affected | 1:1.24.1-2 |
trusty | ignored | end of standard support |
upstream | released | 1.22.0, 1.23.0 |
Показывать по
EPSS
2.1 Low
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally)
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally)
Buffer overflow in the array_from_pyobj function of fortranobject.c in ...
Buffer Copy without Checking Size of Input in NumPy
EPSS
2.1 Low
CVSS2
5.5 Medium
CVSS3