CVE-2020-29651
09.12.2020, 07:15
A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers to cause a compute-time denial of service attack by supplying malicious input to the blame functionality.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pytest | py | 𝑥 ≤ 1.9.0 |
| oracle | zfs_storage_appliance_kit | 8.8 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| pypy |
| ||||||||||||||
| pypy3 |
| ||||||||||||||
| python-py |
|
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||
|---|---|---|---|
| python36-PyYAML |
| ||
| python36-py |
| ||
| python36-pyOpenSSL |
| ||
| python36-pyasn1 |
| ||
| python36-pycparser |
| ||
| python36-pyparsing |
| ||
| python36-pyparsing-doc |
| ||
| python36-python-dateutil |
|
References