VYPR

rpm package

opensuse/python-pydantic&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/python-pydantic&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2024-3772MedApr 15, 2024
    affected < 2.13.4-2.1fixed 2.13.4-2.1

    Regular expression denial of service in Pydanic < 2.4.0, < 1.10.13 allows remote attackers to cause denial of service via a crafted email string.

  • CVE-2020-10735HigSep 9, 2022
    affected < 2.10.6-1.1fixed 2.10.6-1.1

    A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2

  • CVE-2021-29510LowMay 13, 2021
    affected < 2.13.4-2.1fixed 2.13.4-2.1

    Pydantic is a data validation and settings management using Python type hinting. In affected versions passing either `'infinity'`, `'inf'` or `float('inf')` (or their negatives) to `datetime` or `date` fields causes validation to run forever with 100% CPU usage (on one CPU). Pyda