Logo
vulnerabilityCVE-2022-42969
Name
CVE-2022-42969
Source
NVD ( link)Debian ( link)
Description
The py library through 1.11.0 for Python allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data, because the InfoSvnCommand argument is mishandled. Note: This has been disputed by multiple third parties as not being reproduceable and they argue this is not a valid vulnerability.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
python-py
Exploitable

Vulnerability Ratings#


5.3
CVSSv31
7.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
1.11.0
Exploitable
openwrt
master
1.11.0-r1
Exploitable
openwrt
openwrt-25.12
1.11.0-r1
Exploitable