Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

ubuntu логотип

CVE-2025-69229

7 месяцев назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-69229

7 месяцев назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2025-69229

7 месяцев назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-69229

7 месяцев назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-g84x-mcqj-x9qq

7 месяцев назад

AIOHTTP vulnerable to DoS through chunked messages

EPSS: Низкий
fstec логотип

BDU:2026-07328

7 месяцев назад

Уязвимость HTTP-клиента aiohttp, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260420-73-0021

4 месяца назад

Уязвимость python-aiohttp

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0859-1

5 месяцев назад

Security update for python-aiohttp

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0858-1

5 месяцев назад

Security update for python-aiohttp

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20204-1

6 месяцев назад

Security update for python-aiohttp, python-Brotli

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-69229

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.3
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-69229

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.8
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-69229

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, handling of chunked messages can result in excessive blocking CPU usage when receiving a large number of chunks. If an application makes use of the request.read() method in an endpoint, it may be possible for an attacker to cause the server to spend a moderate amount of blocking CPU time (e.g. 1 second) while processing the request. This could potentially lead to DoS as the server would be unable to handle other requests during that time. This issue is fixed in version 3.13.3.

CVSS3: 5.3
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-69229

AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...

CVSS3: 5.3
0%
Низкий
7 месяцев назад
github логотип
GHSA-g84x-mcqj-x9qq

AIOHTTP vulnerable to DoS through chunked messages

0%
Низкий
7 месяцев назад
fstec логотип
BDU:2026-07328

Уязвимость HTTP-клиента aiohttp, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
7 месяцев назад
redos логотип
ROS-20260420-73-0021

Уязвимость python-aiohttp

CVSS3: 7.5
0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0859-1

Security update for python-aiohttp

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0858-1

Security update for python-aiohttp

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20204-1

Security update for python-aiohttp, python-Brotli

6 месяцев назад

Уязвимостей на страницу