Security Advisory

CVE-2026-15310

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-25 15:07:58
Last updated 2026-09-11 00:36:03
Assigner PSF
CVSS score 2.1
State PUBLISHED

Description

When decompressing crafted zip files using the bzip/LZMA/Zstandard compressions, Python could use an attacker-controlled size to pre-allocate memory, possibly resulting in memory exhaustion.