Junglewise Threat Intelligence

CVE-2019-16228: PYSEC-2019-240 - An issue was discovered in py-lmdb 0.97. There is a divide-by-zero error in the function mdb_env_open2 if mdb_env_read_header obtains a zero

CVE-2019-16228 · Severity: low · CVSS 3.1 · Published 2019-09-11

Technologies: lmdb (PyPI). Vendors: PyPI.

Executive brief

An issue was discovered in py-lmdb 0.97. There is a divide-by-zero error in the function mdb_env_open2 if mdb_env_read_header obtains a zero value for a certain size field. NOTE: this outcome occurs when accessing a data.mdb file supplied by an attacker.

Affected products

  • PyPI lmdb

Related threats