Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2017-0906

Disclosure Date: November 13, 2017 (last updated November 26, 2024)
The Recurly Client Python Library before 2.0.5, 2.1.16, 2.2.22, 2.3.1, 2.4.5, 2.5.1, 2.6.2 is vulnerable to a Server-Side Request Forgery vulnerability in the "Resource.get" method that could result in compromise of API keys or other critical resources.
0
Attacker Value
Unknown

CVE-2014-3589

Disclosure Date: August 25, 2014 (last updated October 05, 2023)
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
0
Attacker Value
Unknown

CVE-2009-4134

Disclosure Date: May 27, 2010 (last updated October 04, 2023)
Buffer underflow in the rgbimg module in Python 2.5 allows remote attackers to cause a denial of service (application crash) via a large ZSIZE value in a black-and-white (aka B/W) RGB image that triggers an invalid pointer dereference.
0
Attacker Value
Unknown

CVE-2010-1450

Disclosure Date: May 27, 2010 (last updated October 04, 2023)
Multiple buffer overflows in the RLE decoder in the rgbimg module in Python 2.5 allow remote attackers to have an unspecified impact via an image file containing crafted data that triggers improper processing within the (1) longimagedata or (2) expandrow function.
0
Attacker Value
Unknown

CVE-2010-1449

Disclosure Date: May 27, 2010 (last updated November 08, 2023)
Integer overflow in rgbimgmodule.c in the rgbimg module in Python 2.5 allows remote attackers to have an unspecified impact via a large image that triggers a buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-3143.12.
0
Attacker Value
Unknown

CVE-2007-2052

Disclosure Date: April 16, 2007 (last updated October 04, 2023)
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect buffer size to be used for the strxfrm function, which allows context-dependent attackers to read portions of memory via unknown manipulations that trigger a buffer over-read due to missing null termination.
0