Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.152432
Category:General
Title:Python IP Ranges Vulnerability (Jun 2024) - Mac OS X
Summary:Python is prone to a vulnerability in the ipaddress module.
Description:Summary:
Python is prone to a vulnerability in the ipaddress module.

Vulnerability Insight:
The 'ipaddress' module contained incorrect information about
whether certain IPv4 and IPv6 addresses were designated as 'globally reachable' or 'private'.
This affected the 'is_private' and 'is_global' properties of the ipaddress.IPv4Address,
ipaddress.IPv4Network, ipaddress.IPv6Address, and ipaddress.IPv6Network classes, where values
wouldn't be returned in accordance with the latest information from the IANA Special-Purpose
Address Registries.

Affected Software/OS:
Python prior to version 3.8.20, 3.9.x prior to 3.9.20, 3.10.x
prior to 3.10.15, 3.11.x prior to 3.11.10 and 3.12.x prior to 3.12.4.

Solution:
Update to version 3.8.20, 3.9.20, 3.10.15, 3.11.10, 3.12.4 or
later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2024-4032
https://github.com/python/cpython/commit/22adf29da8d99933ffed8647d3e0726edd16f7f8
https://github.com/python/cpython/commit/40d75c2b7f5c67e254d0a025e0f2e2c7ada7f69f
https://github.com/python/cpython/commit/895f7e2ac23eff4743143beef0f0c5ac71ea27d3
https://github.com/python/cpython/commit/ba431579efdcbaed7a96f2ac4ea0775879a332fb
https://github.com/python/cpython/commit/c62c9e518b784fe44432a3f4fc265fb95b651906
https://github.com/python/cpython/commit/f86b17ac511e68192ba71f27e752321a3252cee3
https://github.com/python/cpython/issues/113171
https://github.com/python/cpython/pull/113179
https://mail.python.org/archives/list/security-announce@python.org/thread/NRUHDUS2IV2USIZM2CVMSFL6SCKU3RZA/
https://www.iana.org/assignments/iana-ipv4-special-registry/iana-ipv4-special-registry.xhtml
https://www.iana.org/assignments/iana-ipv6-special-registry/iana-ipv6-special-registry.xhtml
http://www.openwall.com/lists/oss-security/2024/06/17/3
CopyrightCopyright (C) 2024 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.