PT-2023-31593 · Ipaddress · Ipaddress

Published

2023-12-29

·

Updated

2024-11-07

·

CVE-2023-50570

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IPAddress version 5.1.0
Description An issue in the component IPAddressBitsDivision leads to an infinite loop. This issue is disputed as it only occurs when the developer supplies invalid arguments, and the product is not intended to always halt for contrived inputs.
Recommendations For IPAddress version 5.1.0, consider validating input arguments to the IPAddressBitsDivision component to prevent infinite loops. As a temporary workaround, consider implementing input validation checks to ensure that only valid arguments are supplied to the component.

Exploit

Fix

Infinite Loop

Weakness Enumeration

Related Identifiers

CVE-2023-50570
GHSA-QPHF-W3CQ-JPMX
OPENSUSE-SU-2024:14468-1

Affected Products

Ipaddress