Published
by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
4 packages
- python312Packages.pysnmp-pyasn1
- python313Packages.pysnmp-pyasn1
- python312Packages.pyasn1-modules
- python313Packages.pyasn1-modules
- @LeSuisse accepted
- @LeSuisse published on GitHub
pyasn1 has a DoS vulnerability in decoder
pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.
Affected products
pyasn1
- ==< 0.6.2
Matching in nixpkgs
pkgs.python312Packages.pyasn1
Generic ASN.1 library for Python
-
nixos-unstable pyasn1-0.6.1
- nixpkgs-unstable pyasn1-0.6.1
- nixos-unstable-small pyasn1-0.6.1
pkgs.python313Packages.pyasn1
Generic ASN.1 library for Python
-
nixos-unstable pyasn1-0.6.1
- nixpkgs-unstable pyasn1-0.6.1
- nixos-unstable-small pyasn1-0.6.1