-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability root cause was identified in the SegmentedIterable class handling large object transfers. Multiple sources (bug reports, commit diffs, and OSSA advisory) show the fix involved adding explicit closure of app_iter generators in SegmentedIterable.close() to resolve cyclic references. This matches the CVE description of connection resource leaks during interrupted requests to large objects.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| swift | pip | < 2.3.1 | 2.3.1 |
| swift | pip | >= 2.4.0, < 2.5.1 | 2.5.1 |
KEV Misses 88% of Exploited CVEs- Get the report