CVE-2010-1449: Buffer Overflow
Integer overflow in rgbimgmodule.c in the rgbimg module in Python 2.5 allows remote attackers to have an unspecified impact via a large image that triggers a buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-3143.12.
Affected Software
Remediation
Patch Available
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2010-1449?
CVE-2010-1449 has a medium severity rating due to the potential for remote attackers to exploit a buffer overflow.
What are the affected versions for CVE-2010-1449?
CVE-2010-1449 affects Python versions 2.5.0 and earlier, as well as certain Red Hat distributions of Python 2.3.4 and 2.4.3.
How do I fix CVE-2010-1449?
To mitigate CVE-2010-1449, upgrade to an unaffected version of Python that addresses this vulnerability.
What causes CVE-2010-1449?
CVE-2010-1449 is caused by an integer overflow in the rgbimgmodule.c, leading to a potential buffer overflow.
Is CVE-2010-1449 related to any previous vulnerabilities?
Yes, CVE-2010-1449 is related to an incomplete fix for the previously reported CVE-2008-3143.