Логотип exploitDog
product: "python"
Консоль
Логотип exploitDog

exploitDog

product: "python"
Python

Pythonвысокоуровневый язык программирования общего назначения. Его философия дизайна делает акцент на читаемости кода.

Релизный цикл, информация об уязвимостях

Продукт: Python
Вендор: python

График релизов

3.103.113.123.133.1420212022202320242025202620272028202920302031

Недавние уязвимости Python

Количество 887

nvd логотип

CVE-2008-1679

больше 17 лет назад

Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2008-1679

больше 17 лет назад

Multiple integer overflows in imageop.c in Python before 2.5.3 allow c ...

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2008-1679

больше 17 лет назад

Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2008-1887

больше 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2008-1887

больше 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute ...

CVSS2: 9.3
EPSS: Низкий
ubuntu логотип

CVE-2008-1887

больше 17 лет назад

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

CVSS2: 9.3
EPSS: Низкий
redhat логотип

CVE-2008-3142

больше 17 лет назад

Multiple buffer overflows in Python 2.5.2 and earlier on 32bit platforms allow context-dependent attackers to cause a denial of service (crash) or have unspecified other impact via a long string that leads to incorrect memory allocation during Unicode string processing, related to the unicode_resize function and the PyMem_RESIZE macro.

EPSS: Низкий
nvd логотип

CVE-2008-1721

больше 17 лет назад

Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2008-1721

больше 17 лет назад

Integer signedness error in the zlib extension module in Python 2.5.2 ...

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2008-1721

больше 17 лет назад

Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

CVSS2: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2008-1679

Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.

CVSS2: 6.8
0%
Низкий
больше 17 лет назад
debian логотип
CVE-2008-1679

Multiple integer overflows in imageop.c in Python before 2.5.3 allow c ...

CVSS2: 6.8
0%
Низкий
больше 17 лет назад
ubuntu логотип
CVE-2008-1679

Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.

CVSS2: 6.8
0%
Низкий
больше 17 лет назад
nvd логотип
CVE-2008-1887

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

CVSS2: 9.3
1%
Низкий
больше 17 лет назад
debian логотип
CVE-2008-1887

Python 2.5.2 and earlier allows context-dependent attackers to execute ...

CVSS2: 9.3
1%
Низкий
больше 17 лет назад
ubuntu логотип
CVE-2008-1887

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

CVSS2: 9.3
1%
Низкий
больше 17 лет назад
redhat логотип
CVE-2008-3142

Multiple buffer overflows in Python 2.5.2 and earlier on 32bit platforms allow context-dependent attackers to cause a denial of service (crash) or have unspecified other impact via a long string that leads to incorrect memory allocation during Unicode string processing, related to the unicode_resize function and the PyMem_RESIZE macro.

2%
Низкий
больше 17 лет назад
nvd логотип
CVE-2008-1721

Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

CVSS2: 7.5
31%
Средний
больше 17 лет назад
debian логотип
CVE-2008-1721

Integer signedness error in the zlib extension module in Python 2.5.2 ...

CVSS2: 7.5
31%
Средний
больше 17 лет назад
ubuntu логотип
CVE-2008-1721

Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

CVSS2: 7.5
31%
Средний
больше 17 лет назад

Уязвимостей на страницу


Поделиться