CVE-2021-29063 - log back

CVE-2021-29063 edited at 21 Jun 2021 22:00:42
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Type
- Unknown
+ Denial of service
Description
+ A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Mpmath version 1.2.1 when the mpmathify function is called.
References
+ https://github.com/yetingli/PoCs/blob/main/CVE-2021-29063/Mpmath.md
+ https://github.com/fredrik-johansson/mpmath/issues/548
+ https://github.com/fredrik-johansson/mpmath/pull/570
+ https://github.com/fredrik-johansson/mpmath/commit/c811b37c65a4372a7ce613111d2a508c204f9833
Notes
CVE-2021-29063 created at 21 Jun 2021 21:57:25