MGASA-2014-0139

Source
https://advisories.mageia.org/MGASA-2014-0139.html
Import Source
https://advisories.mageia.org/MGASA-2014-0139.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0139
Related
Published
2014-03-24T07:37:41Z
Modified
2014-03-24T07:37:32Z
Summary
Updated python package fixes security vulnerabilities
Details

Denial of service flaws due to unbound readline() calls in the imaplib, poplib, and smtplib modules (CVE-2013-1752).

A gzip bomb and unbound read denial of service flaw in python XMLRPC library (CVE-2013-1753).

References
Credits

Affected packages

Mageia:3 / python

Package

Name
python
Purl
pkg:rpm/mageia/python?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7.6-1.1.mga3

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / python

Package

Name
python
Purl
pkg:rpm/mageia/python?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7.6-1.1.mga4

Ecosystem specific

{
    "section": "core"
}