[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2023-2117 --- python3-pygments

ID: oval:org.secpod.oval:def:1701447Date: (C)2023-08-08   (M)2023-12-20
Class: PATCHFamily: unix




In pygments 1.1+, fixed in 2.7.4, the lexers used to parse programming languages rely heavily on regular expressions. Some of the regular expressions have exponential or cubic worst-case complexity and are vulnerable to ReDoS. By crafting malicious input, an attacker can cause a denial of service

Platform:
Amazon Linux 2
Product:
python3-pygments
Reference:
ALAS2-2023-2117
CVE-2021-27291
CVE    1
CVE-2021-27291

© SecPod Technologies