QID 982724
QID 982724: Python (pip) Security Update for py (GHSA-hj5v-574p-mj7c)
A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers to cause a compute-time denial of service attack by supplying malicious input to the blame functionality.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hj5v-574p-mj7c for updates pertaining to this vulnerability.
Vendor References
- GHSA-hj5v-574p-mj7c -
github.com/advisories/GHSA-hj5v-574p-mj7c
CVEs related to QID 982724
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hj5v-574p-mj7c | py |
|