Количество 2
Количество 2
CVE-2024-8061
In version 3.23.0 of aimhubio/aim, certain methods that request data from external servers do not have set timeouts, causing the server to wait indefinitely for a response. This can lead to a denial of service, as the tracking server does not respond to other requests while waiting. The issue arises in the client used by the `aim` tracking server to communicate with external resources, specifically in the `_run_read_instructions` method and similar calls without timeouts.
GHSA-6w7p-xrvp-p7xv
Aim allows denial of service due to no timeouts for some tracking server endpoints
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-8061 In version 3.23.0 of aimhubio/aim, certain methods that request data from external servers do not have set timeouts, causing the server to wait indefinitely for a response. This can lead to a denial of service, as the tracking server does not respond to other requests while waiting. The issue arises in the client used by the `aim` tracking server to communicate with external resources, specifically in the `_run_read_instructions` method and similar calls without timeouts. | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад | |
GHSA-6w7p-xrvp-p7xv Aim allows denial of service due to no timeouts for some tracking server endpoints | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад |
Уязвимостей на страницу