VYPR

rpm package

opensuse/python-typed-ast&distro=openSUSE Leap 15.1

pkg:rpm/opensuse/python-typed-ast&distro=openSUSE%20Leap%2015.1

Vulnerabilities (2)

  • CVE-2019-19274Nov 26, 2019
    affected < 1.3.1-lp151.2.6.1fixed 1.3.1-lp151.2.6.1

    typed_ast 1.3.0 and 1.3.1 has a handle_keywordonly_args out-of-bounds read. An attacker with the ability to cause a Python interpreter to parse Python source (but not necessarily execute it) may be able to crash the interpreter process. This could be a concern, for example, in a

  • CVE-2019-19275Nov 26, 2019
    affected < 1.3.1-lp151.2.6.1fixed 1.3.1-lp151.2.6.1

    typed_ast 1.3.0 and 1.3.1 has an ast_for_arguments out-of-bounds read. An attacker with the ability to cause a Python interpreter to parse Python source (but not necessarily execute it) may be able to crash the interpreter process. This could be a concern, for example, in a web-b