Все бюллетени/p10/ALT-PU-2024-9087-5
ALT-PU-2024-9087-5

Обновление пакета python3-module-scipy в ветке p10

Версия1.6.1-alt3.p10.1
Задание#350714
Опубликовано2024-06-28
Макс. серьёзностьCRITICAL
Серьёзность:

Закрытые проблемы (2)

CVE-2023-25399
MEDIUM5.5

A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() function. Note: This is disputed as a bug and not a vulnerability. SciPy is not designed to be exposed to untrusted users or data directly.

Опубликовано: 2023-07-05Изменено: 2024-11-21
CVSS 3.xСРЕДНЯЯ 5.5
CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVE-2023-29824
CRITICAL9.8

A use-after-free issue was discovered in Py_FindObjects() function in SciPy versions prior to 1.8.0. NOTE: the vendor and discoverer indicate that this is not a security issue.

Опубликовано: 2023-07-06Изменено: 2024-11-21
CVSS 3.xКРИТИЧЕСКАЯ 9.8
CVSS:3.x/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H