VDB
KO
HIGH 7.8

PYSEC-2020-343

Details

blosc2.c in Blosc C-Blosc2 through 2.0.0.beta.5 has a heap-based buffer overflow when there is a lack of space to write compressed data.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / blosc2
Introduced in: 0 Fixed in: c4c6470e88210afc95262c8b9fcc27e30ca043ee
Fix pip install --upgrade 'blosc2>=c4c6470e88210afc95262c8b9fcc27e30ca043ee'

References