CVE-2008-2315

Multiple integer overflows in Python 2.5.2 and earlier allow context-dependent attackers to have an unknown impact via vectors related to the (1) stringobject, (2) unicodeobject, (3) bufferobject, (4) longobject, (5) tupleobject, (6) stropmodule, (7) gcmodule, and (8) mmapmodule modules.  NOTE: The expandtabs integer overflows in stringobject and unicodeobject in 2.5.2 are covered by CVE-2008-5031.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
VendorProductVersion
pythonpython
𝑥
≤ 2.5.2
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
python2.4
hardy
Fixed 2.4.5-1ubuntu4.1
released
gutsy
Fixed 2.4.4-6ubuntu4.2
released
feisty
Fixed 2.4.4-2ubuntu7.2
released
dapper
Fixed 2.4.3-0ubuntu6.2
released
python2.5
hardy
Fixed 2.5.2-2ubuntu4.1
released
gutsy
Fixed 2.5.1-5ubuntu5.2
released
feisty
Fixed 2.5.1-0ubuntu1.2
released
dapper
dne
References