Lucene search

K
cvelistMitreCVELIST:CVE-2021-41500
HistoryDec 17, 2021 - 8:44 p.m.

CVE-2021-41500

2021-12-1720:44:24
mitre
www.cve.org
2
cve-2021-41500
string comparison
cvxopt
apis
denial of service
fake capsule objects

EPSS

0.001

Percentile

44.4%

Incomplete string comparison vulnerability exits in cvxopt.org cvxop <= 1.2.6 in APIs (cvxopt.cholmod.diag, cvxopt.cholmod.getfactor, cvxopt.cholmod.solve, cvxopt.cholmod.spsolve), which allows attackers to conduct Denial of Service attacks by construct fake Capsule objects.

EPSS

0.001

Percentile

44.4%