Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-cx3h-4qpv-8hc9 | Tornado has out-of-bounds memory access via C extension |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 16 Jul 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 15 Jul 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tornadoweb
Tornadoweb tornado |
|
| Vendors & Products |
Tornadoweb
Tornadoweb tornado |
Wed, 15 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Jul 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, the optional native extension tornado.speedups implemented websocket_mask without validating that the mask argument is exactly four bytes, allowing the C function to read up to three bytes beyond the provided buffer when reached through Tornado XSRF token decoding with the native extension active. This issue is fixed in version 6.5.6. | |
| Title | Tornado: Out-of-bounds memory access in C extension | |
| Weaknesses | CWE-126 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-07-15T13:26:39.749Z
Reserved: 2026-06-01T22:03:19.640Z
Link: CVE-2026-49854
Updated: 2026-07-15T13:23:14.145Z
Status : Deferred
Published: 2026-07-14T21:17:02.300
Modified: 2026-07-15T19:50:11.367
Link: CVE-2026-49854
OpenCVE Enrichment
Updated: 2026-07-31T05:00:05Z
Github GHSA