QID 995510
Date Published: 2023-10-05
QID 995510: Python (Pip) Security Update for asyncua (GHSA-gfvq-mxw3-mfq3)
Versions of the package asyncua before 0.9.96 are vulnerable to Denial of Service (DoS) such that an attacker can send a malformed packet and as a result, the server will enter into an infinite loop and consume excessive memory.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-gfvq-mxw3-mfq3 for updates and patch information.
Vendor References
- GHSA-gfvq-mxw3-mfq3 -
github.com/advisories/GHSA-gfvq-mxw3-mfq3
CVEs related to QID 995510
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-gfvq-mxw3-mfq3 | asyncua |
|