Skip to main content

Vendor archive

python_software_foundation CVEs

Beta · best-effort

3 CVEs tagged to vendor python_software_foundation0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-4108

Published Sep 18, 2008

Tools/faqwiz/move-faqwiz.sh (aka the generic FAQ wizard moving tool) in Python 2.4.5 might allow local users to overwrite arbitrary files via a symlink attack on a tmp$RANDOM.tmp…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0299

Published Jan 16, 2008

common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from an…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-1657

Published Mar 24, 2007

Stack-based buffer overflow in the file_compress function in minigzip (Modules/zlib) in Python 2.5 allows context-dependent attackers to execute arbitrary code via a long file arg…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1