← Volver a CVEs
CVE-2018-1061
N/ADescripcion
python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado6/19/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
canonical:ubuntu_linuxdebian:debian_linuxfedoraproject:fedorapython:pythonredhat:ansible_towerredhat:enterprise_linux_desktopredhat:enterprise_linux_serverredhat:enterprise_linux_workstation
Debilidades (CWE)
CWE-20
Referencias
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00040.html(secalert@redhat.com)
http://www.securitytracker.com/id/1042001(secalert@redhat.com)
https://access.redhat.com/errata/RHBA-2019:0327(secalert@redhat.com)
https://access.redhat.com/errata/RHSA-2018:3041(secalert@redhat.com)
https://access.redhat.com/errata/RHSA-2018:3505(secalert@redhat.com)
https://access.redhat.com/errata/RHSA-2019:1260(secalert@redhat.com)
https://access.redhat.com/errata/RHSA-2019:3725(secalert@redhat.com)
https://bugs.python.org/issue32981(secalert@redhat.com)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1061(secalert@redhat.com)
https://docs.python.org/3.5/whatsnew/changelog.html#python-3-5-6-release-candidate-1(secalert@redhat.com)
https://docs.python.org/3.6/whatsnew/changelog.html#python-3-6-5-release-candidate-1(secalert@redhat.com)
https://lists.debian.org/debian-lts-announce/2018/09/msg00030.html(secalert@redhat.com)
https://lists.debian.org/debian-lts-announce/2018/09/msg00031.html(secalert@redhat.com)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/46PVWY5LFP4BRPG3BVQ5QEEFYBVEXHCK/(secalert@redhat.com)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AEZ5IQT7OF7Q2NCGIVABOWYGKO7YU3NJ/(secalert@redhat.com)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JSKPGPZQNTAULHW4UH63KGOOUIDE4RRB/(secalert@redhat.com)
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03951en_us(secalert@redhat.com)
https://usn.ubuntu.com/3817-1/(secalert@redhat.com)
https://usn.ubuntu.com/3817-2/(secalert@redhat.com)
https://www.debian.org/security/2018/dsa-4306(secalert@redhat.com)
https://www.debian.org/security/2018/dsa-4307(secalert@redhat.com)
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00040.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1042001(af854a3a-2127-422b-91ae-364da2661108)
https://access.redhat.com/errata/RHBA-2019:0327(af854a3a-2127-422b-91ae-364da2661108)
https://access.redhat.com/errata/RHSA-2018:3041(af854a3a-2127-422b-91ae-364da2661108)
https://access.redhat.com/errata/RHSA-2018:3505(af854a3a-2127-422b-91ae-364da2661108)
https://access.redhat.com/errata/RHSA-2019:1260(af854a3a-2127-422b-91ae-364da2661108)
https://access.redhat.com/errata/RHSA-2019:3725(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.python.org/issue32981(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1061(af854a3a-2127-422b-91ae-364da2661108)
https://docs.python.org/3.5/whatsnew/changelog.html#python-3-5-6-release-candidate-1(af854a3a-2127-422b-91ae-364da2661108)
https://docs.python.org/3.6/whatsnew/changelog.html#python-3-6-5-release-candidate-1(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2018/09/msg00030.html(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2018/09/msg00031.html(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/46PVWY5LFP4BRPG3BVQ5QEEFYBVEXHCK/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AEZ5IQT7OF7Q2NCGIVABOWYGKO7YU3NJ/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JSKPGPZQNTAULHW4UH63KGOOUIDE4RRB/(af854a3a-2127-422b-91ae-364da2661108)
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03951en_us(af854a3a-2127-422b-91ae-364da2661108)
https://usn.ubuntu.com/3817-1/(af854a3a-2127-422b-91ae-364da2661108)
https://usn.ubuntu.com/3817-2/(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2018/dsa-4306(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2018/dsa-4307(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.