Various versions of Python do not properly restrict readline calls, which allows remote attackers to cause a denial of service (memory consumption) via a long string, related to (1) httplib - fixed in 2.7.4, 2.6.9, and 3.3.3; (2) ftplib - fixed in 2.7.6, 2.6.9, 3.3.3; (3) imaplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; (4) nntplib - fixed in 2.7.6, 2.6.9, 3.3.3; (5) poplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; and (6) smtplib - not yet fixed in 2.7.x, fixed in 2.6.9, not yet fixed in 3.3.x. NOTE: this was REJECTed because it is incompatible with CNT1 "Independently Fixable" in the CVE Counting Decisions
History

No history.

cve-icon MITRE

Status: REJECTED

Assigner: mitre

Published: 2019-06-03T19:04:24

Updated: 2019-06-03T19:04:24

Reserved: 2013-02-15T00:00:00

Link: CVE-2013-1752

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Rejected

Published: 2019-06-03T20:15:09.487

Modified: 2023-11-07T02:14:48.750

Link: CVE-2013-1752

cve-icon Redhat

Severity : Moderate

Publid Date: 2012-09-25T00:00:00Z

Links: CVE-2013-1752 - Bugzilla