Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2008-04-21 21:41
Updated : 2017-09-28 18:30
NVD link : CVE-2008-1679
Mitre link : CVE-2008-1679
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
python_software_foundation
- python