CPython v3.12.0 alpha 7 was discovered to contain a heap use-after-free via the function ascii_decode at /Objects/unicodeobject.c.
{ "cwe_ids": [ "CWE-416" ] }
[ { "signature_type": "Function", "deprecated": false, "source": "https://github.com/python/cpython/commit/d5a97074d24cd14cb2a35a2b1ad3074863cde264", "signature_version": "v1", "target": { "function": "tok_get_fstring_mode", "file": "Parser/tokenizer.c" }, "digest": { "function_hash": "246454790113584125124450278536411816426", "length": 3735.0 }, "id": "PSF-2023-3-54f249cb" }, { "signature_type": "Line", "deprecated": false, "source": "https://github.com/python/cpython/commit/d5a97074d24cd14cb2a35a2b1ad3074863cde264", "signature_version": "v1", "target": { "file": "Parser/tokenizer.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "51267681898860069028679615138883177799", "213093290520206118406422764680253202129", "192193823543881691897098346576838619575", "240189861850278322221601354770139566320" ] }, "id": "PSF-2023-3-ccff2eec" } ]