Количество 17
Количество 17
GHSA-gvw2-fvqg-v8mm
Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15.

CVE-2018-14647
Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15.

CVE-2018-14647
Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15.

CVE-2018-14647
Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15.
CVE-2018-14647
Python's elementtree C accelerator failed to initialise Expat's hash s ...

SUSE-SU-2018:3156-1
Security update for python

BDU:2018-01554
Уязвимость пакета программ Python, связанная с ошибками при освобождении ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

openSUSE-SU-2019:0292-1
Security update for python

SUSE-SU-2019:0482-2
Security update for python

SUSE-SU-2019:0482-1
Security update for python

SUSE-SU-2019:2053-2
Security update for python3

SUSE-SU-2019:2053-1
Security update for python3
ELSA-2019-2030
ELSA-2019-2030: python security and bug fix update (MODERATE)

SUSE-SU-2020:2699-1
Security update for python3

openSUSE-SU-2020:0086-1
Security update for python3

SUSE-SU-2020:0114-1
Security update for python3

SUSE-SU-2020:0234-1
Security update for python
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-gvw2-fvqg-v8mm Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15. | CVSS3: 7.5 | 1% Низкий | около 3 лет назад | |
![]() | CVE-2018-14647 Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15. | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад |
![]() | CVE-2018-14647 Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15. | CVSS3: 5.3 | 1% Низкий | больше 6 лет назад |
![]() | CVE-2018-14647 Python's elementtree C accelerator failed to initialise Expat's hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by constructing an XML document that would cause pathological hash collisions in Expat's internal data structures, consuming large amounts CPU and RAM. The vulnerability exists in Python versions 3.7.0, 3.6.0 through 3.6.6, 3.5.0 through 3.5.6, 3.4.0 through 3.4.9, 2.7.0 through 2.7.15. | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад |
CVE-2018-14647 Python's elementtree C accelerator failed to initialise Expat's hash s ... | CVSS3: 7.5 | 1% Низкий | больше 6 лет назад | |
![]() | SUSE-SU-2018:3156-1 Security update for python | 1% Низкий | больше 6 лет назад | |
![]() | BDU:2018-01554 Уязвимость пакета программ Python, связанная с ошибками при освобождении ресурсов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 3.5 | 1% Низкий | почти 7 лет назад |
![]() | openSUSE-SU-2019:0292-1 Security update for python | больше 6 лет назад | ||
![]() | SUSE-SU-2019:0482-2 Security update for python | около 6 лет назад | ||
![]() | SUSE-SU-2019:0482-1 Security update for python | больше 6 лет назад | ||
![]() | SUSE-SU-2019:2053-2 Security update for python3 | почти 6 лет назад | ||
![]() | SUSE-SU-2019:2053-1 Security update for python3 | почти 6 лет назад | ||
ELSA-2019-2030 ELSA-2019-2030: python security and bug fix update (MODERATE) | почти 6 лет назад | |||
![]() | SUSE-SU-2020:2699-1 Security update for python3 | больше 4 лет назад | ||
![]() | openSUSE-SU-2020:0086-1 Security update for python3 | больше 5 лет назад | ||
![]() | SUSE-SU-2020:0114-1 Security update for python3 | больше 5 лет назад | ||
![]() | SUSE-SU-2020:0234-1 Security update for python | больше 5 лет назад |
Уязвимостей на страницу