Oval Definition:oval:com.ubuntu.bionic:def:201714158000
Revision Date:2017-09-05Version:1
Title:CVE-2017-14158 on Ubuntu 18.04 LTS (bionic) - low.
Description:Scrapy 1.4 allows remote attackers to cause a denial of service (memory consumption) via large files because arbitrarily many files are read into memory, which is especially problematic if the files are then individually written in a separate thread to a slow storage resource, as demonstrated by interaction between dataReceived (in core/downloader/handlers/http11.py) and S3FilesStore.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-14158
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND The 'python-scrapy' package in bionic is affected, but a decision has been made to defer addressing it (note: '2019-06-06').
  • BACK