Total vulnerabilities in the database
A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.
Software | From | Fixed in |
---|---|---|
python / python | 3.11.0-alpha2 | 3.11.0-alpha2.x |
python / python | 3.11.0-alpha3 | 3.11.0-alpha3.x |
python / python | 3.11.0-alpha4 | 3.11.0-alpha4.x |
python / python | 3.11.0-alpha5 | 3.11.0-alpha5.x |
python / python | 3.11.0-alpha6 | 3.11.0-alpha6.x |
python / python | 3.11.0-alpha1 | 3.11.0-alpha1.x |
python / python | 3.7.0 | 3.7.14 |
python / python | 3.8.0 | 3.8.14 |
python / python | 3.11.0-beta2 | 3.11.0-beta2.x |
python / python | 3.11.0-beta3 | 3.11.0-beta3.x |
python / python | 3.11.0-beta4 | 3.11.0-beta4.x |
python / python | 3.11.0-beta5 | 3.11.0-beta5.x |
python / python | 3.11.0-rc1 | 3.11.0-rc1.x |
python / python | 3.10.0 | 3.10.7 |
python / python | 3.9.0 | 3.9.14 |
python / python | 3.11.0-alpha7 | 3.11.0-alpha7.x |
python / python | 3.11.0-beta1 | 3.11.0-beta1.x |
redhat / enterprise_linux | 8.0 | 8.0.x |
redhat / quay | 3.0.0 | 3.0.0.x |
fedoraproject / fedora | 35 | 35.x |
fedoraproject / fedora | 36 | 36.x |
fedoraproject / fedora | 37 | 37.x |