LWN.net Logo

python: information disclosure

Package(s):python CVE #(s):CVE-2011-1015
Created:May 6, 2011 Updated:October 18, 2012
Description: From the Red Hat advisory:

An information disclosure flaw was found in the way the Python CGIHTTPServer module processed certain HTTP GET requests. A remote attacker could use a specially-crafted request to obtain the CGI script's source code.

Alerts:
CentOS CESA-2011:0492 2011-05-05
CentOS CESA-2011:0491 2011-05-05
Red Hat RHSA-2011:0491-01 2011-05-05
Red Hat RHSA-2011:0492-01 2011-05-05
Red Hat RHSA-2011:0554-01 2011-05-19
Mandriva MDVSA-2011:096 2011-05-22
Ubuntu USN-1596-1 2012-10-04
Ubuntu USN-1613-2 2012-10-17
Ubuntu USN-1613-1 2012-10-17

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds