Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-5699

Опубликовано: 02 сент. 2016
Источник: debian
EPSS Средний

Описание

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python3.5not-affectedpackage
python3.4fixed3.4.4~rc1-1package
python2.7fixed2.7.10~rc1-1package
python2.7fixed2.7.9-2+deb8u1jessiepackage

Примечания

  • https://bugs.python.org/issue22928

  • Fixed in 3.4 / 3.5: revision 94952: https://hg.python.org/cpython/rev/bf3e1c9b80e9

  • Fixed in 2.7: revision 94951: https://hg.python.org/cpython/rev/1c45047c5102

EPSS

Процентиль: 93%
0.10221
Средний

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 9 лет назад

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.

CVSS3: 5.3
redhat
больше 10 лет назад

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.

CVSS3: 6.1
nvd
почти 9 лет назад

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.

CVSS3: 6.1
github
около 3 лет назад

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.

suse-cvrf
почти 9 лет назад

Security update for python

EPSS

Процентиль: 93%
0.10221
Средний