[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2018-1132 --- python3

ID: oval:org.secpod.oval:def:1700104Date: (C)2018-12-24   (M)2024-04-17
Class: PATCHFamily: unix




Python#039;s elementtree C accelerator failed to initialise Expat#039;s hash salt during initialization. This could make it easy to conduct denial of service attacks against Expat by contructing an XML document that would cause pathological hash collisions in Expat#039;s internal data structures, consuming large amounts CPU and RAM.

Platform:
Amazon Linux 2
Product:
python3
Reference:
ALAS2-2018-1132
CVE-2018-14647
CVE    1
CVE-2018-14647
CPE    2
cpe:/o:amazon:linux:2
cpe:/a:python:python:3

© SecPod Technologies