Metrics
Affected Vendors & Products
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Mon, 18 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Giskard-ai
Giskard-ai giskard |
|
CPEs | cpe:2.3:a:giskard-ai:giskard:*:*:*:*:*:*:*:* | |
Vendors & Products |
Giskard-ai
Giskard-ai giskard |
|
Metrics |
cvssV3_1
|
Thu, 14 Nov 2024 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Giskard is an evaluation and testing framework for AI systems. A Remote Code Execution (ReDoS) vulnerability was discovered in Giskard component by the GitHub Security Lab team. When processing datasets with specific text patterns with Giskard detectors, this vulnerability could trigger exponential regex evaluation times, potentially leading to denial of service. Giskard versions prior to 2.15.5 are affected. | |
Title | ReDoS in Giskard Scan text perturbation | |
Weaknesses | CWE-1333 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-11-21T14:56:20.478Z
Reserved: 2024-11-11T18:49:23.560Z
Link: CVE-2024-52524

Updated: 2024-11-18T20:21:32.264Z

Status : Awaiting Analysis
Published: 2024-11-14T18:15:26.610
Modified: 2024-11-21T15:15:33.993
Link: CVE-2024-52524

No data.