Lucene search

K
osvGoogleOSV:PYSEC-2021-854
HistoryDec 17, 2021 - 7:15 p.m.

PYSEC-2021-854

2021-12-1719:15:00
Google
osv.dev
20
numpy 1.9.x
buffer overflow
pyarray_newfromdescr_int
denial of service

EPSS

0.001

Percentile

30.3%

A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifying arrays of large dimensions (over 32) from Python code, which could let a malicious user cause a Denial of Service.