Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Incomplete string comparison vulnerability exits in cvxopt.org cvxop <= 1.2.6 in APIs (cvxopt.cholmod.diag, cvxopt.cholmod.getfactor, cvxopt.cholmod.solve, cvxopt.cholmod.spsolve), which allows attackers to conduct Denial of Service attacks by construct fake Capsule objects.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cvxopt 安全漏洞
Vulnerability Description
Cvxopt是一个基于 Python 编程语言的凸优化免费软件包。 cvxopt cvxop 1.2.6及之前版本存在安全漏洞,该漏洞源于API中不完整的字符串比较。攻击者可利用该漏洞过构造假胶囊对象进行拒绝服务攻击。
CVSS Information
N/A
Vulnerability Type
N/A