GHSA-v62p-cjv8-35xh

Suggest an improvement
Source
https://github.com/advisories/GHSA-v62p-cjv8-35xh
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/04/GHSA-v62p-cjv8-35xh/GHSA-v62p-cjv8-35xh.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-v62p-cjv8-35xh
Aliases
  • CVE-2012-0051
Published
2022-04-23T00:40:09Z
Modified
2024-11-22T05:12:30Z
Summary
Tahoe-LAFS fails to ensure integrity
Details

Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.

Database specific
{
    "cwe_ids":  [],
    "github_reviewed":  true,
    "github_reviewed_at":  "2024-11-21T23:19:17Z",
    "nvd_published_at":  "2019-11-07T18:15:00Z",
    "severity":  "MODERATE"
}
References

Affected packages

PyPI / tahoe-lafs

Package

Name
tahoe-lafs
View open source insights on deps.dev
Purl
pkg:pypi/tahoe-lafs

Affected ranges

Affected versions

1.*
1.9.0

Database specific

source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/04/GHSA-v62p-cjv8-35xh/GHSA-v62p-cjv8-35xh.json"