Логотип exploitDog
bind:CVE-2021-21236
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-21236

Количество 6

Количество 6

ubuntu логотип

CVE-2021-21236

около 5 лет назад

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.

CVSS3: 5.7
EPSS: Низкий
nvd логотип

CVE-2021-21236

около 5 лет назад

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2021-21236

около 5 лет назад

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter base ...

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-hq37-853p-g5cf

около 5 лет назад

Regular Expression Denial of Service in CairoSVG

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2023:0272-1

больше 2 лет назад

Security update for python-CairoSVG

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2023:0260-1

больше 2 лет назад

Security update for python-CairoSVG

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-21236

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.

CVSS3: 5.7
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-21236

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.

CVSS3: 5.7
0%
Низкий
около 5 лет назад
debian логотип
CVE-2021-21236

CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter base ...

CVSS3: 5.7
0%
Низкий
около 5 лет назад
github логотип
GHSA-hq37-853p-g5cf

Regular Expression Denial of Service in CairoSVG

CVSS3: 7.5
0%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2023:0272-1

Security update for python-CairoSVG

больше 2 лет назад
suse-cvrf логотип
openSUSE-SU-2023:0260-1

Security update for python-CairoSVG

больше 2 лет назад

Уязвимостей на страницу