QID 982816
QID 982816: Python (pip) Security Update for clickhouse-driver (GHSA-vgv5-cxvh-vfxh)
clickhouse-driver before 0.1.5 allows a malicious clickhouse server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, due to a buffer overflow.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-vgv5-cxvh-vfxh for updates pertaining to this vulnerability.
Vendor References
- GHSA-vgv5-cxvh-vfxh -
github.com/advisories/GHSA-vgv5-cxvh-vfxh
CVEs related to QID 982816
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-vgv5-cxvh-vfxh | clickhouse-driver |
|