CVE-2008-2315

EUVD-2008-2311
Multiple integer overflows in Python 2.5.2 and earlier allow context-dependent attackers to have an unknown impact via vectors related to the (1) stringobject, (2) unicodeobject, (3) bufferobject, (4) longobject, (5) tupleobject, (6) stropmodule, (7) gcmodule, and (8) mmapmodule modules.  NOTE: The expandtabs integer overflows in stringobject and unicodeobject in 2.5.2 are covered by CVE-2008-5031.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
Affected Products (NVD)
VendorProductVersion
pythonpython
𝑥
≤ 2.5.2
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
python2.4
dapper
Fixed 2.4.3-0ubuntu6.2
released
feisty
Fixed 2.4.4-2ubuntu7.2
released
gutsy
Fixed 2.4.4-6ubuntu4.2
released
hardy
Fixed 2.4.5-1ubuntu4.1
released
python2.5
dapper
dne
feisty
Fixed 2.5.1-0ubuntu1.2
released
gutsy
Fixed 2.5.1-5ubuntu5.2
released
hardy
Fixed 2.5.2-2ubuntu4.1
released
References