Логотип exploitDog
bind:"CVE-2024-49769"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-49769"

Количество 10

Количество 10

ubuntu логотип

CVE-2024-49769

около 1 года назад

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2024-49769

около 1 года назад

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-49769

около 1 года назад

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2024-49769

10 месяцев назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-49769

около 1 года назад

Waitress is a Web Server Gateway Interface server for Python 2 and 3. ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:4107-1

около 1 года назад

Security update for python-waitress

EPSS: Низкий
github логотип

GHSA-3f84-rpwh-47g6

около 1 года назад

Waitress vulnerable to DoS leading to high CPU usage/resource exhaustion

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-10887

больше 2 лет назад

Уязвимость функции getpeername() WSGI сервера для python Waitress, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3876-1

около 1 года назад

Security update for python-waitress

EPSS: Низкий
redos логотип

ROS-20250922-10

4 месяца назад

Уязвимость python3-waitress

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-49769

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
1%
Низкий
около 1 года назад
redhat логотип
CVE-2024-49769

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
1%
Низкий
около 1 года назад
nvd логотип
CVE-2024-49769

Waitress is a Web Server Gateway Interface server for Python 2 and 3. When a remote client closes the connection before waitress has had the opportunity to call getpeername() waitress won't correctly clean up the connection leading to the main thread attempting to write to a socket that no longer exists, but not removing it from the list of sockets to attempt to process. This leads to a busy-loop calling the write function. A remote attacker could run waitress out of available sockets with very little resources required. Waitress 3.0.1 contains fixes that remove the race condition.

CVSS3: 7.5
1%
Низкий
около 1 года назад
msrc логотип
CVSS3: 7.5
1%
Низкий
10 месяцев назад
debian логотип
CVE-2024-49769

Waitress is a Web Server Gateway Interface server for Python 2 and 3. ...

CVSS3: 7.5
1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:4107-1

Security update for python-waitress

1%
Низкий
около 1 года назад
github логотип
GHSA-3f84-rpwh-47g6

Waitress vulnerable to DoS leading to high CPU usage/resource exhaustion

CVSS3: 7.5
1%
Низкий
около 1 года назад
fstec логотип
BDU:2024-10887

Уязвимость функции getpeername() WSGI сервера для python Waitress, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:3876-1

Security update for python-waitress

около 1 года назад
redos логотип
ROS-20250922-10

Уязвимость python3-waitress

CVSS3: 7.5
1%
Низкий
4 месяца назад

Уязвимостей на страницу