HIGH7.5
PYSEC-2024-289
Details
NVIDIA NeMo framework for Ubuntu contains a vulnerability in tools/asr_webapp where an attacker may cause an allocation of resources without limits or throttling. A successful exploit of this vulnerability may lead to a server-side denial of service.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/nemo-asr
Introduced in:
0No fixed version published yet for nemo-asr (pip). Pin to a known-safe version or switch to an alternative.