Oval Definition:oval:org.mitre.oval:def:22809
Revision Date:2014-05-26Version:52
Title:ELSA-2009:1176: python security update (Moderate)
Description:Multiple integer overflows in Python 2.2.3 through 2.5.1, and 2.6, allow context-dependent attackers to have an unknown impact via a large integer value in the tabsize argument to the expandtabs method, as implemented by (1) the string_expandtabs function in Objects/stringobject.c and (2) the unicode_expandtabs function in Objects/unicodeobject.c.NOTE: this vulnerability reportedly exists because of an incomplete fix for CVE-2008-2315.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-2052
CVE-2007-4965
CVE-2008-1721
CVE-2008-1887
CVE-2008-2315
CVE-2008-3142
CVE-2008-3143
CVE-2008-3144
CVE-2008-4864
CVE-2008-5031
ELSA-2009:1176-01
Platform(s):Oracle Linux 5
Product(s):python
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • python-devel is earlier than 0:2.4.3-24.el5_3.6
  • OR tkinter is earlier than 0:2.4.3-24.el5_3.6
  • OR python is earlier than 0:2.4.3-24.el5_3.6
  • OR python-tools is earlier than 0:2.4.3-24.el5_3.6
  • BACK