CVE-2024-6232

Updated: 2025-03-21 01:50:31.217957

Description:

There is a MEDIUM severity vulnerability affecting CPython. Regular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9 Python python2 2.7.18 7.5 HIGH Released CLSA-2024:1730226421 2024-10-29 17:19:30