{"id":"GHSA-r8g9-w4f3-9crm","summary":"LMDB invalid write ","details":"An issue was discovered in py-lmdb 0.97. `mdb_node_del` does not validate a `memmove` in the case of an unexpected `node-\u003emn_hi`, leading to an invalid write operation.","aliases":["CVE-2019-16226","PYSEC-2019-238"],"modified":"2024-09-30T17:01:01.981850Z","published":"2022-05-24T16:55:55Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2023-07-17T22:49:02Z","nvd_published_at":"2019-09-11T15:15:00Z","cwe_ids":["CWE-787"],"severity":"HIGH"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-16226"},{"type":"WEB","url":"https://github.com/jnwatson/py-lmdb/issues/210"},{"type":"WEB","url":"https://github.com/LMDB/lmdb/blob/mdb.master/libraries/liblmdb/mdb.c#L8443-L8498"},{"type":"WEB","url":"https://github.com/TeamSeri0us/pocs/tree/master/lmdb/lmdb%20memory%20corruption%20vuln"},{"type":"PACKAGE","url":"https://github.com/jnwatson/py-lmdb"},{"type":"WEB","url":"https://github.com/pypa/advisory-database/tree/main/vulns/lmdb/PYSEC-2019-238.yaml"},{"type":"WEB","url":"https://pypi.org/project/lmdb"}],"affected":[{"package":{"name":"lmdb","ecosystem":"PyPI","purl":"pkg:pypi/lmdb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"0.97"}]}],"versions":["0.58","0.59","0.60","0.61","0.62","0.63","0.64","0.65","0.66","0.67","0.68","0.69","0.70","0.71","0.73","0.74","0.75","0.76","0.77","0.78","0.79","0.80","0.81","0.82","0.83","0.84","0.85","0.86","0.87","0.88","0.89","0.91","0.92","0.93","0.94","0.95","0.96","0.97"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-r8g9-w4f3-9crm/GHSA-r8g9-w4f3-9crm.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N"}]}