VDB
BDU%3A2024-04194
BDU%3A2024-04194
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость HTTP-клиента aiohttp, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «Ред Софт», Сообщество свободного программного обеспечения | РЕД ОС (запись в едином реестре российских программ №3751), aiohttp |
Timeline
- May 29, 2024 CVE Published
- Feb 5, 2025 CVE Updated
References
- https://nvd.nist.gov/vuln/detail/CVE-2024-30251 url
- http://www.openwall.com/lists/oss-security/2024/05/02/4 url
- https://github.com/aio-libs/aiohttp/commit/7eecdff163ccf029fbb1ddc9de4169d4aaeb6597 url
- https://github.com/aio-libs/aiohttp/commit/cebe526b9c34dc3a3da9140409db63014bc4cf19 url
- https://github.com/aio-libs/aiohttp/commit/f21c6f2ca512a026ce7f0f6c6311f62d6a638866 url
- https://github.com/aio-libs/aiohttp/security/advisories/GHSA-5m98-qgg9-wh84 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory