Описание
Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.7.7-2 |
| esm-infra-legacy/trusty | released | 2.7.6-8ubuntu0.2 |
| lucid | DNE | |
| precise | released | 2.7.3-0ubuntu3.8 |
| saucy | ignored | end of life |
| trusty | released | 2.7.6-8ubuntu0.2 |
| trusty/esm | released | 2.7.6-8ubuntu0.2 |
| upstream | not-affected | 2.7.7~rc1 |
| utopic | not-affected | 2.7.7-2 |
| vivid | not-affected | 2.7.7-2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| lucid | DNE | |
| precise | released | 3.2.3-0ubuntu3.7 |
| saucy | DNE | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | needs-triage | |
| utopic | DNE | |
| vivid | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 3.4.1-6 |
| esm-infra-legacy/trusty | released | 3.4.0-2ubuntu1.1 |
| lucid | DNE | |
| precise | DNE | |
| saucy | DNE | |
| trusty | released | 3.4.0-2ubuntu1.1 |
| trusty/esm | released | 3.4.0-2ubuntu1.1 |
| upstream | released | 3.4.1 |
| utopic | not-affected | 3.4.1-6 |
| vivid | not-affected | 3.4.1-6 |
Показывать по
4.3 Medium
CVSS2
5.9 Medium
CVSS3
Связанные уязвимости
Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.
Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.
Array index error in the scanstring function in the _json module in Py ...
simplejson before 2.6.1 vulnerable to array index error
ELSA-2015-2101: python security, bug fix, and enhancement update (MODERATE)
4.3 Medium
CVSS2
5.9 Medium
CVSS3