MGASA-2021-0114 - Updated python-pygments packages fix a security vulnerability

Publication date: 05 Mar 2021
URL: https://advisories.mageia.org/MGASA-2021-0114.html
Type: security
Affected Mageia releases: 7, 8

Infinite loop in SML lexer may lead to DoS. When the SMLLexer gets fed the
string "exception" it seems to loop indefinitely (rhbz#1922136).

References:
- https://bugs.mageia.org/show_bug.cgi?id=28319
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/TWY26NY4DBGDCUICGQT3I432Y5LZWS2U/

SRPMS:
- 8/core/python-pygments-2.7.4-1.1.mga8
- 7/core/python-pygments-2.3.1-1.1.mga7

Mageia 2021-0114: python-pygments security update

Infinite loop in SML lexer may lead to DoS

Summary

Infinite loop in SML lexer may lead to DoS. When the SMLLexer gets fed the string "exception" it seems to loop indefinitely (rhbz#1922136). References: - https://bugs.mageia.org/show_bug.cgi?id=28319

References

- https://bugs.mageia.org/show_bug.cgi?id=28319

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/TWY26NY4DBGDCUICGQT3I432Y5LZWS2U/

Resolution

MGASA-2021-0114 - Updated python-pygments packages fix a security vulnerability

SRPMS

- 8/core/python-pygments-2.7.4-1.1.mga8

- 7/core/python-pygments-2.3.1-1.1.mga7

Severity
Publication date: 05 Mar 2021
URL: https://advisories.mageia.org/MGASA-2021-0114.html
Type: security

Related News