Junglewise Threat Intelligence

CVE-2021-33430: PYSEC-2021-854 - A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifying arrays of large di

CVE-2021-33430 · Severity: low · CVSS 3.1 · Published 2021-12-17

Technologies: numpy (PyPI). Vendors: PyPI.

Executive brief

A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifying arrays of large dimensions (over 32) from Python code, which could let a malicious user cause a Denial of Service.

Affected products

  • PyPI numpy

Related threats