Advisories ยป MGASA-2024-0185

Updated python-sqlparse packages fix security vulnerability

Publication date: 21 May 2024
Modification date: 21 May 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-4340

Description

Passing a heavily nested list to sqlparse.parse() leads to a Denial of
Service due to RecursionError.
                

References

SRPMS

9/core