5
CVSSv2

CVE-2021-34141

Published: 17/12/2021 Updated: 24/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

An incomplete string comparison in the numpy.core component in NumPy prior to 1.22.0 allows malicious users to trigger slightly incorrect copying by constructing specific string objects. NOTE: the vendor states that this reported code behavior is "completely harmless."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

numpy numpy

oracle communications cloud native core policy 22.1.3

Vendor Advisories

Several security issues were fixed in NumPy ...