Lucene search

K
osvGoogleOSV:PYSEC-2020-92
HistoryDec 09, 2020 - 7:15 a.m.

PYSEC-2020-92

2020-12-0907:15:00
Google
osv.dev
15
denial of service
regular expression
py.path.svnwc
python-py
compute-time
blame functionality

EPSS

0.003

Percentile

70.3%

A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers to cause a compute-time denial of service attack by supplying malicious input to the blame functionality.