Race Condition Affecting ledfx package, versions [,2.0.71)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-PYTHON-LEDFX-7086416
- published 24 May 2024
- disclosed 1 May 2024
- credit Unknown
How to fix?
Upgrade LedFx
to version 2.0.71 or higher.
Overview
LedFx is an A network based light effect controller
Affected versions of this package are vulnerable to Race Condition through the presence of empty virtual data. Thsi vulnerability could potentially be exploited to cause a denial of service (DoS).
References
CVSS Scores
version 3.1