Логотип exploitDog
bind:CVE-2019-12410
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12410

Количество 3

Количество 3

nvd логотип

CVE-2019-12410

больше 6 лет назад

While investigating UBSAN errors in https://github.com/apache/arrow/pull/5365 it was discovered Apache Arrow versions 0.12.0 to 0.14.1, left memory Array data uninitialized when reading RLE null data from parquet. This affected the C++, Python, Ruby and R implementations. The uninitialized memory could potentially be shared if are transmitted over the wire (for instance with Flight) or persisted in the streaming IPC and file formats.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-12410

больше 6 лет назад

While investigating UBSAN errors in https://github.com/apache/arrow/pu ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cjw4-2w9r-r8mv

больше 3 лет назад

Missing Initialization of Resource in Apache Arrow

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12410

While investigating UBSAN errors in https://github.com/apache/arrow/pull/5365 it was discovered Apache Arrow versions 0.12.0 to 0.14.1, left memory Array data uninitialized when reading RLE null data from parquet. This affected the C++, Python, Ruby and R implementations. The uninitialized memory could potentially be shared if are transmitted over the wire (for instance with Flight) or persisted in the streaming IPC and file formats.

CVSS3: 7.5
5%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-12410

While investigating UBSAN errors in https://github.com/apache/arrow/pu ...

CVSS3: 7.5
5%
Низкий
больше 6 лет назад
github логотип
GHSA-cjw4-2w9r-r8mv

Missing Initialization of Resource in Apache Arrow

CVSS3: 7.5
5%
Низкий
больше 3 лет назад

Уязвимостей на страницу