[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255479

 
 

909

 
 

198938

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

python3: urllib basic auth regex denial of service (CVE-2020-8492)

ID: oval:org.secpod.oval:def:1801787Date: (C)2020-12-23   (M)2023-11-10
Class: PATCHFamily: unix




Python 3.5 through 3.5.9, 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1 allows an HTTP server to conduct Regular Expression Denial of Service attacks against a client because of urllib.request.AbstractBasicAuthHandler catastrophic backtracking.

Platform:
Alpine Linux 3.11
Alpine Linux 3.12
Product:
python3
Reference:
11580
CVE-2020-8492
CVE    1
CVE-2020-8492
CPE    2
cpe:/a:python:python3
cpe:/o:alpinelinux:alpine_linux:3.11

© SecPod Technologies