CVE-2008-1721: Buffer Overflow
Published Apr 10, 2008
·Updated
Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.
Affected Software
7 affected components
Python Python>=2.4.0<2.4.6
Python Python>=2.5.0<=2.5.2
Debian Debian Linux=4.0
Canonical Ubuntu Linux=7.04
Canonical Ubuntu Linux=7.10
Canonical Ubuntu Linux=8.04
Canonical Ubuntu Linux=6.06
Event History
Apr 10, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1721?
CVE-2008-1721 is considered a critical vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2008-1721?
To fix CVE-2008-1721, upgrade to Python version 2.5.3 or later to address the integer signedness error.
3
What versions of Python are affected by CVE-2008-1721?
CVE-2008-1721 affects Python versions 2.5.2 and earlier, as well as certain Debian and Ubuntu distributions.
4
What type of vulnerability is CVE-2008-1721?
CVE-2008-1721 is an integer signedness error that leads to a buffer overflow.
5
Can CVE-2008-1721 be exploited remotely?
Yes, CVE-2008-1721 can be exploited remotely, allowing attackers to execute arbitrary code.