CNNVD-202601-2759 Information

CNNVD ID

CNNVD-202601-2759

CVE-2026-23490

  • CNNVD Published: 2026-01-16

Description (Chinese)

pyasn1是pyasn1 maintenance organization开源的一个Python库。 pyasn1 0.6.2之前版本存在安全漏洞,该漏洞源于处理畸形RELATIVE-OID时存在内存耗尽问题,可能导致拒绝服务。

Description (English)

Pyasn1 is an open-source Python library for pyasn1 majority organization. There was a security loophole in the prepyasn1,0.6.2 version, which stemmed from the RAM depletion in dealing with the malformation RELATIVE-OID, which could lead to the denial of services.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

pyasn1 maintenance organization

Published

2026-01-16

Last Modified

2026-02-24

References

https://github.com/pyasn1/pyasn1/commit/3908f144229eed4df24bd569d16e5991ace44970 https://github.com/pyasn1/pyasn1/releases/tag/v0.6.2 https://github.com/pyasn1/pyasn1/security/advisories/GHSA-63vm-454h-vhhq

Patch

https://github.com/pyasn1/pyasn1/releases

Share on: