Threats Tagged 'ghsa-hm4w-wwcw-mr6r'
View all threats tagged with 'ghsa-hm4w-wwcw-mr6r'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-hm4w-wwcw-mr6r'
Click on any threat for detailed analysis and mitigation recommendations
pyasn1: Uncontrolled resource consumption when converting decoded REAL values (CVE-2026-59886)CVE-2026-59886 0 pyasn1 versions prior to 0.6.4 contain a vulnerability in the univ.Real type where converting decoded REAL values to Python floats can cause uncontrolled resource consumption. This occurs because very large exponents in BER/CER/DER-encoded REAL values trigger expensive big-integer exponentiation, leading to excessive CPU and memory use. The issue affects float conversions including prettyPrint(), str(), comparisons, arithmetic, and explicit float() calls on decoded REAL values. Applications decoding untrusted ASN.1 data that then convert or print these REAL values are vulnerable to denial of service. The vulnerability is fixed in pyasn1 version 0.6.4. Avoid converting or printing REAL objects from untrusted sources as a workaround. Join the discussion | GCVE Database | 07/21/2026, 19:11:20 UTC Added: 07/22/2026, 00:11:52 UTC |
Showing 1 to 1 of 1 result