5
CVSSv2

CVE-2010-1634

Published: 27/05/2010 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Multiple integer overflows in audioop.c in the audioop module in Python 2.6, 2.7, 3.1, and 3.2 allow context-dependent malicious users to cause a denial of service (application crash) via a large fragment, as demonstrated by a call to audioop.lin2lin with a long string in the first argument, leading to a buffer overflow. NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-3143.5.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

python python

fedoraproject fedora 13

suse linux enterprise server 11

opensuse opensuse 11.2

opensuse opensuse 11.3

suse linux enterprise server 10

canonical ubuntu linux 11.04

canonical ubuntu linux 11.10

canonical ubuntu linux 8.04

canonical ubuntu linux 10.04

Vendor Advisories

Debian Bug report logs - #599739 CVE-2010-1634 and CVE-2010-2089 Package: python25; Maintainer for python25 is (unknown); Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Sun, 10 Oct 2010 17:33:02 UTC Severity: grave Tags: security Fixed in version python25/255-9 Done: Matthias Klose <doko@debianorg> B ...
Several security issues were fixed in Python 24 ...
Several security issues were fixed in Python 31 ...
Several security issues were fixed in Python 25 ...
Several security issues were fixed in Python 26 ...