Back to bug 2221034

Who When What Removed Added
TEJ RATHI 2023-07-07 06:44:58 UTC Summary TRIAGE-CVE-2023-29824 scipy: use-after-free in Py_FindObjects() function in SciPy TRIAGE-CVE-2023-29824 scipy: use-after-free in Py_FindObjects() function
TEJ RATHI 2023-07-07 06:45:41 UTC Blocks 2220862
TEJ RATHI 2023-07-07 06:46:33 UTC Blocks 2221033
TEJ RATHI 2023-07-07 06:49:23 UTC CC hhorak, jorton, mmuzila, nforro, python-maint
TEJ RATHI 2023-07-07 06:51:19 UTC Depends On 2221055, 2221058, 2221051, 2221057, 2221056, 2221059, 2221052, 2221054, 2221053
TEJ RATHI 2023-07-07 07:25:46 UTC Depends On 2221080, 2221077, 2221075, 2221078, 2221076, 2221079, 2221074
TEJ RATHI 2023-07-07 07:38:25 UTC CC dfreiber, jburrell, jkoehler, kaycoth, kshier, rbobbitt, rogbas, stcannon, vkumar
Red Hat Bugzilla 2023-07-07 08:34:56 UTC Assignee security-response-team nobody
Charalampos Stratakis 2023-07-11 16:31:42 UTC CC cstratak
TEJ RATHI 2023-07-19 10:18:50 UTC Comment 0 updated
TEJ RATHI 2023-07-19 10:41:41 UTC Doc Text SciPy is vulnerable to a denial of service, caused by an use-after-free bug in Py_FindObjects() function. By sending a specially crafted request, an attacker could exploit this vulnerability to cause a denial of service condition.
TEJ RATHI 2023-07-19 10:41:54 UTC Alias TRIAGE-CVE-2023-29824 CVE-2023-29824
TEJ RATHI 2023-07-19 10:42:10 UTC Summary TRIAGE-CVE-2023-29824 scipy: use-after-free in Py_FindObjects() function CVE-2023-29824 scipy: use-after-free in Py_FindObjects() function
RaTasha Tillery-Smith 2023-07-19 13:00:26 UTC Doc Text SciPy is vulnerable to a denial of service, caused by an use-after-free bug in Py_FindObjects() function. By sending a specially crafted request, an attacker could exploit this vulnerability to cause a denial of service condition. A flaw was found in SciPy, where it is vulnerable to a denial of service caused by a use-after-free bug in the Py_FindObjects() function. By sending a specially crafted request, an attacker can cause a denial of service condition.

Back to bug 2221034