Lucene search

K
osvGoogleOSV:PYSEC-2021-345
HistorySep 10, 2021 - 2:15 a.m.

PYSEC-2021-345

2021-09-1002:15:00
Google
osv.dev
9
python
rencode package
typecode decoding
infinite loop
remote attack
cpu consumption
memory consumption

EPSS

0.004

Percentile

74.7%

The rencode package through 1.0.6 for Python allows an infinite loop in typecode decoding (such as via ;\x2f\x7f), enabling a remote attack that consumes CPU and memory.