CVE-2022-42969

The py library through 1.11.0 for Python allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data, because the InfoSvnCommand argument is mishandled. Note: This has been disputed by multiple third parties as not being reproduceable and they argue this is not a valid vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pytest:py:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-10-16 06:15

Updated : 2024-05-17 02:14


NVD link : CVE-2022-42969

Mitre link : CVE-2022-42969

CVE.ORG link : CVE-2022-42969


JSON object : View

Products Affected

pytest

  • py
CWE
CWE-1333

Inefficient Regular Expression Complexity