MGASA-2022-0487

Source
https://advisories.mageia.org/MGASA-2022-0487.html
Import Source
https://advisories.mageia.org/MGASA-2022-0487.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2022-0487
Published
2022-12-30T22:39:00Z
Modified
2026-04-16T04:22:45.395068Z
Summary
Updated python-ujson packages fix security vulnerability
Details

Fixes len integer overflow issue. (RHBZ#2149975) Ultrajson doesn't build on webassembly (e.g. pyodide) because the version of double-conversion used is too old. This updates it to a newer version which supports webassembly.

References
Credits

Affected packages

Mageia:8 / python-ujson

Package

Name
python-ujson
Purl
pkg:rpm/mageia/python-ujson?arch=source&distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.0-1.mga8

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2022-0487.json"