CNNVD-202601-1760 Information

CNNVD ID

CNNVD-202601-1760

CVE-2026-22612

  • CNNVD Published: 2026-01-10

Description (Chinese)

Fickling是Trail of Bits开源的一个Python的反编译器和静态分析器。 Fickling 0.1.7之前版本存在代码问题漏洞,该漏洞源于对builtins模块存在检测盲区,可能导致检测绕过。

Description (English)

Pickling is a Python back compiler and static analyser of Trail of Bits open source. There was a code problem gap in the previous version of Pickling 0.1.7 which stemmed from the detection of blind areas of the Builtins module, which could lead to detection circumvention.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Trail of Bits

Published

2026-01-10

Last Modified

2026-02-24

References

https://github.com/trailofbits/fickling/commit/9f309ab834797f280cb5143a2f6f987579fa7cdf https://github.com/trailofbits/fickling/releases/tag/v0.1.7 https://github.com/trailofbits/fickling/security/advisories/GHSA-h4rm-mm56-xf63

Patch

https://github.com/trailofbits/fickling/releases

Share on: