Lucene search

K
osvGoogleOSV:CVE-2018-1061
HistoryJun 19, 2018 - 12:29 p.m.

CVE-2018-1061

2018-06-1912:29:00
Google
osv.dev
6

8.5 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

79.2%

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service.

References