Python 'bufferobject.c' Integer Overflow Vulnerability
BID:70089
Info
Python 'bufferobject.c' Integer Overflow Vulnerability
| Bugtraq ID: | 70089 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2014-7185 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 23 2014 12:00AM |
| Updated: | Jul 06 2016 01:15PM |
| Credit: | Chris Foster |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Python Software Foundation Python 2.7.2 Python Software Foundation Python 2.7 Oracle Linux 0 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 |
| Not Vulnerable: | |
Discussion
Python 'bufferobject.c' Integer Overflow Vulnerability
Python is prone to an integer-overflow vulnerability because it fails to properly bounds check user-supplied input before copying it into an insufficiently sized buffer.
Attackers can exploit this issue to obtain potentially sensitive information or cause a denial-of-service condition.
Versions prior to Python 2.7.8 are vulnerable.
Python is prone to an integer-overflow vulnerability because it fails to properly bounds check user-supplied input before copying it into an insufficiently sized buffer.
Attackers can exploit this issue to obtain potentially sensitive information or cause a denial-of-service condition.
Versions prior to Python 2.7.8 are vulnerable.
Exploit / POC
Python 'bufferobject.c' Integer Overflow Vulnerability
Attackers can exploit this issue using readily available tools.
Attackers can exploit this issue using readily available tools.
Solution / Fix
Python 'bufferobject.c' Integer Overflow Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
-
Mandriva lib64python-devel-2.7.3-4.8.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64python2.7-2.7.3-4.8.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva python-2.7.3-4.8.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva python-docs-2.7.3-4.8.mbs1.noarch.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva tkinter-2.7.3-4.8.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva tkinter-apps-2.7.3-4.8.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
Python 'bufferobject.c' Integer Overflow Vulnerability
References:
References:
- CVE-2014-7185 Integer overflow vulnerability in Python (Oracle)
- integer overflow in 'buffer' type allows reading memory (Python Software Foundation)
- Python Homepage (Python Software Foundation)
- APPLE-SA-2015-08-13-2 OS X Yosemite v10.10.5 and Security Update 2015-006 (Apple)
- isg3T1023300: Security Bulletin: Python vulnerabilities affect IBM SmartCloud En (IBM)
- isg3T1023439: Multiple vulnerabilities in Python affect PowerKVM (IBM)
- Oracle Linux Bulletin - January 2016 (Oracle)
- Ref: linuxbulletinoct2015-2719645 Oracle Linux Bulletin - October 2015 Revision (Oracle)
- RHSA-2015:1064-1 (RedHat)