CVE-2021-34141

An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly incorrect copying by constructing specific string objects. NOTE: the vendor states that this reported code behavior is "completely harmless."
References
Link Resource
https://github.com/numpy/numpy/issues/18993 Exploit Issue Tracking
https://www.oracle.com/security-alerts/cpujul2022.html Patch Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:numpy:numpy:*:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_policy:22.1.3:*:*:*:*:*:*:*

Information

Published : 2021-12-17 07:15

Updated : 2023-02-24 03:35


NVD link : CVE-2021-34141

Mitre link : CVE-2021-34141

Products Affected
No products.
CWE