python <= 2.5.2, zlib module buffer overflow

Bug #216503 reported by Marcin Banasiak
254
Affects Status Importance Assigned to Milestone
PLD Linux
Fix Released
High
Elan Ruusamäe

Bug Description

Description:
Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

Tags: python

CVE References

Revision history for this message
Marcin Banasiak (megabajt) wrote :
Revision history for this message
Elan Ruusamäe (glen666) wrote :

python-2.5.2-3.src.rpm.info moved to th-main

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.