Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9jx5-6pgf-crrp: scipy memory leak vulnerability

A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() function.

ghsa
#vulnerability#git

scipy memory leak vulnerability

Low severity GitHub Reviewed Published Jul 5, 2023 to the GitHub Advisory Database • Updated Jul 6, 2023

Related news

Ubuntu Security Notice USN-6226-1

Ubuntu Security Notice 6226-1 - It was discovered that SciPy did not properly manage memory operations during reference counting. An attacker could possibly use this issue to cause a denial of service. A use-after-free was discovered in SciPy when handling reference counts. An attacker could possibly use this to cause a denial of service. This issue only affected Ubuntu 20.04 LTS.

CVE-2023-25399: BUG: Memory leak in function `Py_FindObjects` due to new reference is not decreased (static analyzer report) · Issue #16235 · scipy/scipy

A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() function.