The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Numpy | Numpy | * | 1.13.1 (including) |
Python-numpy | Ubuntu | artful | * |
Python-numpy | Ubuntu | bionic | * |
Python-numpy | Ubuntu | cosmic | * |
Python-numpy | Ubuntu | disco | * |
Python-numpy | Ubuntu | esm-infra/bionic | * |
Python-numpy | Ubuntu | esm-infra/xenial | * |
Python-numpy | Ubuntu | trusty | * |
Python-numpy | Ubuntu | upstream | * |
Python-numpy | Ubuntu | xenial | * |
Python-numpy | Ubuntu | zesty | * |