A use-after-free issue was discovered in Py_FindObjects() function in SciPy versions prior to 1.8.0. NOTE: the vendor and discoverer indicate that this is not a security issue.
References
Link | Resource |
---|---|
http://www.square16.org/achievement/cve-2023-29824/ | Product |
https://github.com/scipy/scipy/issues/14713 | Exploit Issue Tracking |
https://github.com/scipy/scipy/issues/14713#issuecomment-1629468565 | Exploit Issue Tracking |
https://github.com/scipy/scipy/pull/15013 | Patch |
Configurations
History
No history.
Information
Published : 2023-07-06 21:15
Updated : 2024-07-22 20:15
NVD link : CVE-2023-29824
Mitre link : CVE-2023-29824
CVE.ORG link : CVE-2023-29824
JSON object : View
Products Affected
scipy
- scipy
CWE
CWE-416
Use After Free