ZeroHour

CVE-2018-1061

CVSS 3.0
7.5 high
EPSS
5%p92
Published
()
Modified
Description

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service.

Vendors
pythondebianredhatcanonicalfedoraproject
Products
python, debian linux, ansible tower, enterprise linux desktop, enterprise linux server, enterprise linux workstation, ubuntu linux, fedora
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.