CVE-2009-3560 CVE-2009-3720) This vulnerability could allow an attacker to cause a denial of service while parsing a malformed XML file."> OVAL Reference oval:org.mitre.oval:def:18064 - CERT Civis.Net
Oval Definition:oval:org.mitre.oval:def:18064
Revision Date:2014-06-23Version:8
Title:DSA-1977-1 python - several vulnerabilities
Description:Jukka Taimisto, Tero Rontti and Rauli Kaksonen discovered that the embedded Expat copy in the interpreter for the Python language, does not properly process malformed or crafted XML files. (CVE-2009-3560 CVE-2009-3720) This vulnerability could allow an attacker to cause a denial of service while parsing a malformed XML file.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2008-2316
CVE-2009-3560
CVE-2009-3720
DSA-1977-1
Platform(s):Debian GNU/Linux 4.0
Debian GNU/Linux 5.0
Product(s):python2.4
python2.5
Definition Synopsis
  • Release section
  • Debian GNU/Linux 4.0 is installed.
  • AND Packages match section
  • python2.4 DPKG is earlier than 2.4.4-3+etch3
  • OR python2.5 DPKG is earlier than 2.5-5+etch2
  • Release section
  • Debian GNU/Linux 5.0 is installed
  • AND Packages match section
  • python2.4 DPKG is earlier than 2.4.6-1+lenny1
  • OR python2.5 DPKG is earlier than 2.5.2-15+lenny1
  • BACK