CVE-2020-29651: Fedoraproject Fedora

High severity, CVSS 7.5. EPSS: 4.7% chance of exploitation in the next 30 days.

A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers to cause a compute-time denial of service attack by supplying malicious input to the blame functionality.

Affected products

  • Fedoraproject Fedora: version 32 only; version 33 only
  • Oracle ZFS Storage Appliance Kit: version 8.8 only
  • Pytest Py: up to and including 1.9.0

Published 2020-12-09. Last modified 2026-06-17.