MGASA-2015-0440

Source
https://advisories.mageia.org/MGASA-2015-0440.html
Import Source
https://advisories.mageia.org/MGASA-2015-0440.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0440
Published
2015-11-10T21:26:39Z
Modified
2026-04-16T04:27:57.747373Z
Summary
Updated python-curl packages fix security vulnerability
Details

A use-after-free vulnerability was found in Curl object's HTTPPOST setopt when a Unicode value is passed as a value with a FORM_BUFFERPTR. The str object created from the passed in unicode object would have its buffer used but the unicode object would be stored instead of the str object (rhbz#1277488).

References
Credits

Affected packages

Mageia:5 / python-curl

Package

Name
python-curl
Purl
pkg:rpm/mageia/python-curl?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.19.5-4.1.mga5

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0440.json"