Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2017-0906
Disclosure Date: November 13, 2017 (last updated November 26, 2024)
The Recurly Client Python Library before 2.0.5, 2.1.16, 2.2.22, 2.3.1, 2.4.5, 2.5.1, 2.6.2 is vulnerable to a Server-Side Request Forgery vulnerability in the "Resource.get" method that could result in compromise of API keys or other critical resources.
0
Attacker Value
Unknown
CVE-2014-3589
Disclosure Date: August 25, 2014 (last updated October 05, 2023)
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
0
Attacker Value
Unknown
CVE-2009-4134
Disclosure Date: May 27, 2010 (last updated October 04, 2023)
Buffer underflow in the rgbimg module in Python 2.5 allows remote attackers to cause a denial of service (application crash) via a large ZSIZE value in a black-and-white (aka B/W) RGB image that triggers an invalid pointer dereference.
0
Attacker Value
Unknown
CVE-2010-1450
Disclosure Date: May 27, 2010 (last updated October 04, 2023)
Multiple buffer overflows in the RLE decoder in the rgbimg module in Python 2.5 allow remote attackers to have an unspecified impact via an image file containing crafted data that triggers improper processing within the (1) longimagedata or (2) expandrow function.
0
Attacker Value
Unknown
CVE-2010-1449
Disclosure Date: May 27, 2010 (last updated November 08, 2023)
Integer overflow in rgbimgmodule.c in the rgbimg module in Python 2.5 allows remote attackers to have an unspecified impact via a large image that triggers a buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-3143.12.
0
Attacker Value
Unknown
CVE-2007-2052
Disclosure Date: April 16, 2007 (last updated October 04, 2023)
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect buffer size to be used for the strxfrm function, which allows context-dependent attackers to read portions of memory via unknown manipulations that trigger a buffer over-read due to missing null termination.
0