An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attacker is able to supply arbitrary input to the GaussianInput.from_string method
Metrics
Affected Vendors & Products
References
History
Tue, 04 Feb 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Materialsvirtuallab
Materialsvirtuallab pymatgen |
|
CPEs | cpe:2.3:a:materialsvirtuallab:pymatgen:-:*:*:*:*:*:*:* | |
Vendors & Products |
Pymatgen
Pymatgen pymatgen |
Materialsvirtuallab
Materialsvirtuallab pymatgen |

Status: PUBLISHED
Assigner: JFROG
Published:
Updated: 2024-08-03T13:19:05.541Z
Reserved: 2022-10-15T00:00:00
Link: CVE-2022-42964

No data.

Status : Modified
Published: 2022-11-09T20:15:09.793
Modified: 2025-02-04T14:11:18.270
Link: CVE-2022-42964

No data.