Logo
vulnerabilityCVE-2024-4340
Name
CVE-2024-4340
Source
NVD ( link)Debian ( link)
Description
Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
python3-sqlparse
Patched

Vulnerability Ratings#


7.5
CVSSv31
NaN
other

Others affected component#


Name
Project
Project Version
Version
Status
yocto
scarthgap
0.4.4
Patched

Resolved with patches#


python3-sqlparse (yocto:kirkstone)

#
Title
Author
Resolve
1
Raise SQLParseError instead of RecursionError.
Andi Albrecht <albrecht.andi@gmail.com>
CVE-2024-4340

python3-sqlparse (yocto:scarthgap)

#
Title
Author
Resolve
1
Raise SQLParseError instead of RecursionError.
Andi Albrecht <albrecht.andi@gmail.com>
CVE-2024-4340