The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-0080 The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
Github GHSA Github GHSA GHSA-frgw-fgh6-9g52 Numpy missing input validation
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00721}

epss

{'score': 0.00526}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T18:51:06.687Z

Reserved: 2017-08-14T00:00:00

Link: CVE-2017-12852

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-08-15T16:29:00.200

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-12852

cve-icon Redhat

Severity : Low

Publid Date: 2017-08-15T00:00:00Z

Links: CVE-2017-12852 - Bugzilla

cve-icon OpenCVE Enrichment

No data.