Description
core.py in Mitogen before 0.2.8 has a typo that drops the unidirectional-routing protection mechanism in the case of a child that is initiated by another child. The Ansible extension is unaffected. NOTE: the vendor disputes this issue because it is exploitable only in conjunction with hypothetical other factors, i.e., an affected use case within a library caller, and a bug in the message receiver policy code that led to reliance on this extra protection mechanism
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-8rf6-w2mx-4xjh | Undirectional routing wasn't respected in some cases in Mitogen |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T00:42:03.692Z
Reserved: 2019-08-18T00:00:00.000Z
Link: CVE-2019-15149
No data.
Status : Modified
Published: 2019-08-18T20:15:09.220
Modified: 2024-11-21T04:28:10.043
Link: CVE-2019-15149
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA