A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a system could take 50ms to parse an int string with 100,000 digits and 5s for 1,000,000 digits (float, decimal, int.from_bytes(), and int() for binary bases 2, 4, 8, 16, and 32 are not affected). The highest threat from this vulnerability is to system availability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2022-09-09T00:00:00
Updated: 2024-08-04T11:14:14.254Z
Reserved: 2020-03-20T00:00:00
Link: CVE-2020-10735
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-09-09T14:15:08.660
Modified: 2024-11-21T04:55:57.717
Link: CVE-2020-10735
Redhat