Regular expression denial of service in Pydanic < 2.4.0, < 1.10.13 allows remote attackers to cause denial of service via a crafted email string.
References
| Link | Resource |
|---|---|
| https://github.com/pydantic/pydantic/pull/7360 | Exploit Issue Tracking Patch |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6JBZLMSH4GAZOVBMT2JUO2LXHY7M2ALI/ | Mailing List Third Party Advisory |
| https://github.com/pydantic/pydantic/pull/7360 | Exploit Issue Tracking Patch |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6JBZLMSH4GAZOVBMT2JUO2LXHY7M2ALI/ | Mailing List Third Party Advisory |
Configurations
History
09 Dec 2025, 18:26
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/pydantic/pydantic/pull/7360 - Exploit, Issue Tracking, Patch | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6JBZLMSH4GAZOVBMT2JUO2LXHY7M2ALI/ - Mailing List, Third Party Advisory | |
| CPE | cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:a:pydantic:pydantic:*:*:*:*:*:*:*:* |
|
| First Time |
Fedoraproject fedora
Pydantic pydantic Pydantic Fedoraproject |
13 Feb 2025, 18:18
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) Regular expression denial of service in Pydanic < 2.4.0, < 1.10.13 allows remote attackers to cause denial of service via a crafted email string. |
21 Nov 2024, 09:30
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/pydantic/pydantic/pull/7360 - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6JBZLMSH4GAZOVBMT2JUO2LXHY7M2ALI/ - |
26 Apr 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
15 Apr 2024, 03:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-04-15 03:16
Updated : 2025-12-09 18:26
NVD link : CVE-2024-3772
Mitre link : CVE-2024-3772
CVE.ORG link : CVE-2024-3772
JSON object : View
Products Affected
pydantic
- pydantic
fedoraproject
- fedora
CWE
CWE-1333
Inefficient Regular Expression Complexity
