lmdb
PyPI5 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting lmdbpage 1 of 1
- CVE-2019-16224CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.982019-09-11
vulnerable: 0.58 ... 0.97 (38 versions)
An issue was discovered in py-lmdb 0.97. For certain values of md_flags, mdb_node_add does not properly set up a memcpy destination, leading to an invalid write operation. NOTE: this outcome occurs when accessing a data.mdb file supplied b…
- CVE-2019-16225CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.982019-09-11
vulnerable: 0.58 ... 0.97 (38 versions)
An issue was discovered in py-lmdb 0.97. For certain values of mp_flags, mdb_page_touch does not properly set up mc->mc_pg[mc->top], leading to an invalid write operation. NOTE: this outcome occurs when accessing a data.mdb file supplied b…
- CVE-2019-16226HIGHCVSS 7.5EG 7.5✓ Fixed in 0.982019-09-11
vulnerable: 0.58 ... 0.97 (38 versions)
An issue was discovered in py-lmdb 0.97. mdb_node_del does not validate a memmove in the case of an unexpected node->mn_hi, leading to an invalid write operation. NOTE: this outcome occurs when accessing a data.mdb file supplied by an atta…
- CVE-2019-16227CRITICALCVSS 9.8EG 9.8✓ Fixed in 0.982019-09-11
vulnerable: 0.58 ... 0.97 (38 versions)
An issue was discovered in py-lmdb 0.97. For certain values of mn_flags, mdb_cursor_set triggers a memcpy with an invalid write operation within mdb_xcursor_init1. NOTE: this outcome occurs when accessing a data.mdb file supplied by an att…
- CVE-2019-16228HIGHCVSS 7.5EG 7.5✓ Fixed in 0.982019-09-11
vulnerable: 0.58 ... 0.97 (38 versions)
An issue was discovered in py-lmdb 0.97. There is a divide-by-zero error in the function mdb_env_open2 if mdb_env_read_header obtains a zero value for a certain size field. NOTE: this outcome occurs when accessing a data.mdb file supplied …
Check whether lmdb is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for lmdb CVEs against the assets you own.
Start Free Scan →