CVE-2021-41496
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a
Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability.
the negative dimensions can only be created by an already privileged user (or internally)
MEDIUM · CVSS 5.5
EPSS 0.00037
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0