Description
Various versions of Python do not properly restrict readline calls, which allows remote attackers to cause a denial of service (memory consumption) via a long string, related to (1) httplib - fixed in 2.7.4, 2.6.9, and 3.3.3; (2) ftplib - fixed in 2.7.6, 2.6.9, 3.3.3; (3) imaplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; (4) nntplib - fixed in 2.7.6, 2.6.9, 3.3.3; (5) poplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; and (6) smtplib - not yet fixed in 2.7.x, fixed in 2.6.9, not yet fixed in 3.3.x. NOTE: this was REJECTed because it is incompatible with CNT1 "Independently Fixable" in the CVE Counting Decisions
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-2653-1 | Python vulnerabilities |
References
History
No history.
Status: REJECTED
Assigner: mitre
Published:
Updated: 2019-06-03T19:04:24.000Z
Reserved: 2013-02-15T00:00:00.000Z
Link: CVE-2013-1752
No data.
Status : Rejected
Published: 2019-06-03T20:15:09.487
Modified: 2023-11-07T02:14:48.750
Link: CVE-2013-1752
OpenCVE Enrichment
No data.
Weaknesses
Ubuntu USN