{"id":"PYSEC-2024-289","details":"\nNVIDIA NeMo framework for Ubuntu contains a vulnerability in tools/asr_webapp where an attacker may cause an allocation of resources without limits or throttling. A successful exploit of this vulnerability may lead to a server-side denial of service.\n\n","aliases":["CVE-2024-0081","GHSA-x392-p65g-4rxx"],"modified":"2026-05-21T15:00:08.668372732Z","published":"2024-04-05T19:15:07.033Z","references":[{"type":"ADVISORY","url":"https://github.com/NVIDIA/NeMo/security/advisories/GHSA-x392-p65g-4rxx"}],"affected":[{"package":{"name":"nemo-asr","ecosystem":"PyPI","purl":"pkg:pypi/nemo-asr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"1.22.0"}]}],"versions":["0.8","0.8.1","0.8.2","0.9.0"],"ecosystem_specific":{},"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/nemo-asr/PYSEC-2024-289.yaml"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}