[CVE-2024-6232] Regular-expression DoS when parsing TarFile headers
Sept. 3, 2024
12:30 p.m.
There is a MEDIUM severity vulnerability affecting CPython.
Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.
Please see the linked CVE ID for the latest information on affected versions:
151
Age (days ago)
151
Last active (days ago)
0 comments
1 participants
participants (1)
-
Seth Larson