Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-40347

Опубликовано: 18 апр. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 5.3

Описание

Python-Multipart is a streaming multipart parser for Python. Versions prior to 0.0.26 have a denial of service vulnerability when parsing crafted multipart/form-data requests with large preamble or epilogue sections. Upgrade to version 0.0.26 or later, which skips ahead to the next boundary candidate when processing leading CR/LF data and immediately discards epilogue data after the closing boundary.

РелизСтатусПримечание
devel

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-apps/resolute

needs-triage

jammy

needs-triage

noble

needs-triage

questing

ignored

end of life, was needs-triage
resolute

needs-triage

upstream

released

0.0.26-1

Показывать по

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
4 месяца назад

Python-Multipart is a streaming multipart parser for Python. Versions prior to 0.0.26 have a denial of service vulnerability when parsing crafted `multipart/form-data` requests with large preamble or epilogue sections. Upgrade to version 0.0.26 or later, which skips ahead to the next boundary candidate when processing leading CR/LF data and immediately discards epilogue data after the closing boundary.

CVSS3: 5.3
nvd
4 месяца назад

Python-Multipart is a streaming multipart parser for Python. Versions prior to 0.0.26 have a denial of service vulnerability when parsing crafted `multipart/form-data` requests with large preamble or epilogue sections. Upgrade to version 0.0.26 or later, which skips ahead to the next boundary candidate when processing leading CR/LF data and immediately discards epilogue data after the closing boundary.

CVSS3: 5.3
debian
4 месяца назад

Python-Multipart is a streaming multipart parser for Python. Versions ...

CVSS3: 5.3
github
4 месяца назад

python-multipart affected by Denial of Service via large multipart preamble or epilogue data

suse-cvrf
2 месяца назад

Security update for python-python-multipart

5.3 Medium

CVSS3