Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-1000158
Description:CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code execution)
Test IDs: 1.3.6.1.4.1.25623.1.0.118245   1.3.6.1.4.1.25623.1.0.873932   1.3.6.1.4.1.25623.1.0.873936   1.3.6.1.4.1.25623.1.1.1.2.2017.1190   1.3.6.1.4.1.25623.1.0.118247   1.3.6.1.4.1.25623.1.1.2.2017.1335   1.3.6.1.4.1.25623.1.0.891520   1.3.6.1.4.1.25623.1.1.1.2.2017.1189   1.3.6.1.4.1.25623.1.0.873858   1.3.6.1.4.1.25623.1.0.843674   1.3.6.1.4.1.25623.1.0.118246   1.3.6.1.4.1.25623.1.0.843677   1.3.6.1.4.1.25623.1.0.873943   1.3.6.1.4.1.25623.1.0.873939   1.3.6.1.4.1.25623.1.1.4.2018.0768.1   1.3.6.1.4.1.25623.1.0.873970   1.3.6.1.4.1.25623.1.1.12.2017.3496.2   1.3.6.1.4.1.25623.1.1.2.2017.1334   1.3.6.1.4.1.25623.1.1.10.2018.0004   1.3.6.1.4.1.25623.1.0.873923   1.3.6.1.4.1.25623.1.0.891519   1.3.6.1.4.1.25623.1.0.873927   1.3.6.1.4.1.25623.1.0.873972  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-1000158
Debian Security Information: DSA-4307 (Google Search)
https://www.debian.org/security/2018/dsa-4307
https://security.gentoo.org/glsa/201805-02
https://bugs.python.org/issue30657
https://lists.debian.org/debian-lts-announce/2017/11/msg00035.html
https://lists.debian.org/debian-lts-announce/2017/11/msg00036.html
https://lists.debian.org/debian-lts-announce/2018/09/msg00030.html
https://lists.debian.org/debian-lts-announce/2018/09/msg00031.html
http://www.securitytracker.com/id/1039890




© 1998-2025 E-Soft Inc. All rights reserved.