|
|
| |
|
| |
python: information leak
| Package(s): | python |
CVE #(s): | CVE-2011-1521
|
| Created: | May 3, 2011 |
Updated: | October 18, 2012 |
| Description: |
From the Pardus advisory:
A security flaw was found in the way handlers for ftp:// and file:// URL
schemes in the Python urllib and urllib2 extensible libraries processed
the urllib open URL request. A remote attacker could use this flaw to
access sensitive information or cause a denial of service (excessive CPU
and memory use) of a Python web application, processing URLs, via a
specially- crafted urllib open URL request.
|
| Alerts: |
|
( Log in to post comments)
|
|
|