micropython-io
PyPI4 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting micropython-iopage 1 of 1
- CVE-2023-7152CRITICALCVSS 9.8EG 9.82023-12-29
vulnerable: 0.0.1, 0.0.2, 0.0.3, 0.1
A vulnerability, which was classified as critical, has been found in MicroPython 1.21.0/1.22.0-preview. Affected by this issue is the function poll_set_add_fd of the file extmod/modselect.c. The manipulation leads to use after free. The ex…
- CVE-2024-8946HIGHCVSS 7.3EG 7.32024-09-17
vulnerable: 0.0.1, 0.0.2, 0.0.3, 0.1
A vulnerability was found in MicroPython 1.23.0. It has been classified as critical. Affected is the function mp_vfs_umount of the file extmod/vfs.c of the component VFS Unmount Handler. The manipulation leads to heap-based buffer overflow…
- CVE-2024-8947MEDIUMCVSS 5.6EG 5.62024-09-17
vulnerable: 0.0.1 ... v1.0-rc1 (62 versions)
A vulnerability was found in MicroPython 1.22.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file py/objarray.c. The manipulation leads to use after free. The attack can be launched r…
- CVE-2024-8948HIGHCVSS 7.3EG 7.32024-09-17
vulnerable: 0.0.1, 0.0.2, 0.0.3, 0.1
A vulnerability was found in MicroPython 1.23.0. It has been rated as critical. Affected by this issue is the function mpz_as_bytes of the file py/objint.c. The manipulation leads to heap-based buffer overflow. The attack may be launched r…
Check whether micropython-io is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for micropython-io CVEs against the assets you own.
Book a Demo →