Retour à la veille

CVE-2026-15310

Publié : 25 août 2026
Modifié : 25 août 2026
Lien officiel NVD

Description détaillée

When decompressing crafted zip files using the bzip/LZMA/Zstandard compressions, Python could use an attacker-controlled size to pre-allocate memory, possibly resulting in memory exhaustion.

Références et Patchs