Logo
vulnerabilityCVE-2022-40896
Name
CVE-2022-40896
Source
NVD ( link)Debian ( link)
Description
A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
python3-pygments
Patched

Vulnerability Ratings#


5.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
2.20.0
Not Affected
yocto
scarthgap
2.17.2
Not Affected

Resolved with patches#


python3-pygments (yocto:kirkstone)

#
Title
Author
Resolve
1
Improve the Smithy metadata matcher.
Narpat Mali <narpat.mali@windriver.com>
CVE-2022-40896