Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Mageia 7 and 8: MGASA-2021-0114 Moderate: DoS Threat in Python-Pygments

mageia
Calendar Grey March 5, 2021
Dist Mageia Esm H88
MGASA-2021-0115 concerns a potential Denial of Service vulnerability stemming from a recursive loop in python-pygments JSON lexer triggered by specific input.
Infinite loop in SML lexer may lead to DoS

Summary

Infinite loop in SML lexer may lead to DoS. When the SMLLexer gets fed the string "exception" it seems to loop indefinitely (rhbz#1922136). References: - https://bugs.mageia.org/show_bug.cgi?id=28319

References

- https://bugs.mageia.org/show_bug.cgi?id=28319

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/TWY26NY4DBGDCUICGQT3I432Y5LZWS2U/

Resolution

SRPMS

- 8/core/python-pygments-2.7.4-1.1.mga8

- 7/core/python-pygments-2.3.1-1.1.mga7

Publication date: 05 Mar 2021
URL: https://advisories.mageia.org/MGASA-2021-0114.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here