Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28908
HistoryJan 07, 2021 - 5:26 a.m.

Arbitrary Code Execution

2021-01-0705:26:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
clickhouse-driver
arbitrary code execution
buffer overflow
py_ssize_t

EPSS

0.005

Percentile

75.5%

clickhouse-driver is vulnerable to arbitrary code execution. The vulnerability exists as it was possible to cause buffer overflow by suppling large values on the parameters which were Py_ssize_t typed.

EPSS

0.005

Percentile

75.5%