USN-6553-1: Pydantic vulnerability
Published Dec 12, 2023
·Updated
Nina Jensen discovered that Pydantic incorrectly handled user input in the date and datetime fields. An attacker could possibly use this issue to cause a denial of service via application crash. (CVE-2021-29510)
Affected Software
2 affected componentsFixes available
All of the following
ubuntu/python3-pydantic<1.2-1ubuntu0.1~esm1
1.2-1ubuntu0.1~esm1
Ubuntu Ubuntu=20.04
Event History
Dec 12, 2023
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-6553-1?
The severity of USN-6553-1 is classified as potentially high due to the possibility of denial of service.
2
How do I fix USN-6553-1?
To fix USN-6553-1, upgrade to version 1.2-1ubuntu0.1~esm1 of python3-pydantic on Ubuntu 20.04.
3
What vulnerability is addressed by USN-6553-1?
USN-6553-1 addresses a vulnerability in Pydantic related to incorrect handling of user input in date and datetime fields.
4
What impact can USN-6553-1 have on my application?
The impact of USN-6553-1 can result in application crashes, potentially leading to a denial of service.
5
Who discovered the issue in USN-6553-1?
The issue in USN-6553-1 was discovered by Nina Jensen.