Wind River Support Network

HomeDefectsLIN10-2609
Fixed

LIN10-2609 : Security Advisory - python - CVE-2017-1000158

Created: Nov 30, 2017    Updated: Dec 3, 2018
Resolved Date: Mar 1, 2018
Previous ID: LIN9-5900
Found In Version: 10.17.41.1
Fix Version: 10.17.41.5
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code execution)

https://nvd.nist.gov/vuln/detail/CVE-2017-1000158

Other Downloads


CVEs


Live chat
Online