Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 PyPI

NumPy NULL Pointer Dereference

GHSA-5545-2q6w-2gh6 · CVE-2021-41495 · PYSEC-2021-856

Published · Modified

Description

Null Pointer Dereference vulnerability exists in numpy.sort in NumPy &lt and 1.19 in the PyArray_DescrNew function due to missing return-value validation, which allows attackers to conduct DoS attacks by repetitively creating sort arrays.

Ready to move

Start Securing

Free, no credit card | First findings in minutes