Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g8m8-g2vw-f7jw

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

EPSS

Процентиль: 85%
0.02485
Низкий

Дефекты

CWE-119
CWE-120

Связанные уязвимости

ubuntu
около 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

redhat
около 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

nvd
около 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

debian
около 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute ...

oracle-oval
почти 16 лет назад

ELSA-2009-1176: python security update (MODERATE)

EPSS

Процентиль: 85%
0.02485
Низкий

Дефекты

CWE-119
CWE-120