CVE-2008-4864
Multiple integer overflows in imageop.c in the imageop module in Python 1.5.2 through 2.5.1 allow context-dependent attackers to break out of the Python VM and execute arbitrary code via large integer values in certain arguments to the crop function,…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 21.0%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple integer overflows in imageop.c in the imageop module in Python 1.5.2 through 2.5.1 allow context-dependent attackers to break out of the Python VM and execute arbitrary code via large integer values in certain arguments to the crop function, leading to a buffer overflow, a different vulnerability than CVE-2007-4965 and CVE-2008-1679.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 21.02% probability · 97th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- python/python
- Source
- cve@mitre.org
References
- http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.htmlMailing List, Third Party Advisory
- http://scary.beasts.org/security/CESA-2008-008.htmlExploit, Third Party Advisory
- http://secunia.com/advisories/33937Not Applicable
- http://secunia.com/advisories/37471Not Applicable
- http://support.apple.com/kb/HT3438Third Party Advisory
- http://svn.python.org/view/python/trunk/Modules/imageop.c?rev=66689&view=diff&r1=66689&r2=66688&p1=python/trunk/Modules/imageop.c&p2=/python/trunk/Modules/imageop.cPermissions Required
- http://svn.python.org/view?rev=66689&view=revPermissions Required
- http://www.openwall.com/lists/oss-security/2008/10/27/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2008/10/29/3Mailing List, Third Party Advisory
- http://www.securityfocus.com/archive/1/507985/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31932Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31976Exploit, Third Party Advisory, VDB Entry
- http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlThird Party Advisory
- http://www.vupen.com/english/advisories/2009/3316Permissions Required
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46606Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10702Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8354Broken Link
- http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.htmlMailing List, Third Party Advisory
- http://scary.beasts.org/security/CESA-2008-008.htmlExploit, Third Party Advisory
- http://secunia.com/advisories/33937Not Applicable
- http://secunia.com/advisories/37471Not Applicable
- http://support.apple.com/kb/HT3438Third Party Advisory
- http://svn.python.org/view/python/trunk/Modules/imageop.c?rev=66689&view=diff&r1=66689&r2=66688&p1=python/trunk/Modules/imageop.c&p2=/python/trunk/Modules/imageop.cPermissions Required
- http://svn.python.org/view?rev=66689&view=revPermissions Required
- http://www.openwall.com/lists/oss-security/2008/10/27/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2008/10/29/3Mailing List, Third Party Advisory
- http://www.securityfocus.com/archive/1/507985/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31932Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31976Exploit, Third Party Advisory, VDB Entry
- http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.