First published: Mon May 13 2024(Updated: )
It was discovered that SQL parse incorrectly handled certain nested lists. An attacker could possibly use this issue to cause a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/python3-sqlparse | <0.4.4-1ubuntu0.1 | 0.4.4-1ubuntu0.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/python3-sqlparse | <0.4.2-1ubuntu1.1 | 0.4.2-1ubuntu1.1 |
Ubuntu | =23.10 | |
All of | ||
ubuntu/python3-sqlparse | <0.4.2-1ubuntu0.22.04.2 | 0.4.2-1ubuntu0.22.04.2 |
Ubuntu | =22.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-6771-1 is categorized as a potential denial of service vulnerability.
To fix USN-6771-1, update the python3-sqlparse package to the latest version available for your Ubuntu release.
USN-6771-1 affects Ubuntu versions 24.04, 23.10, and 22.04 that have specific vulnerable versions of python3-sqlparse.
USN-6771-1 is caused by improper handling of certain nested lists in SQL parse that could be exploited for denial of service.
There is no known workaround for USN-6771-1, thus it is recommended to update to a secure version as soon as possible.