Description
An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority component, the authority regular expression exhibits catastrophic backtracking, causing a denial of service if a URL were passed as a parameter or redirected to via an HTTP redirect.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0456 | An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority component, the authority regular expression exhibits catastrophic backtracking, causing a denial of service if a URL were passed as a parameter or redirected to via an HTTP redirect. |
Github GHSA |
GHSA-q2q7-5pp4-w6pg | Catastrophic backtracking in URL authority parser when passed URL containing many @ characters |
Ubuntu USN |
USN-5812-1 | urllib3 vulnerability |
References
History
No history.
Subscriptions
Fedoraproject
Subscribe
Fedora
Subscribe
Oracle
Subscribe
Enterprise Manager Ops Center
Subscribe
Instantis Enterprisetrack
Subscribe
Zfs Storage Appliance Kit
Subscribe
Python
Subscribe
Urllib3
Subscribe
Redhat
Subscribe
Ansible Automation Platform
Subscribe
Enterprise Linux
Subscribe
Rhel Software Collections
Subscribe
Satellite
Subscribe
Satellite Capsule
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T23:50:42.973Z
Reserved: 2021-05-21T00:00:00.000Z
Link: CVE-2021-33503
No data.
Status : Modified
Published: 2021-06-29T11:15:07.847
Modified: 2024-11-21T06:08:58.030
Link: CVE-2021-33503
OpenCVE Enrichment
No data.
EUVD
Github GHSA
Ubuntu USN