First published: Thu Mar 24 2011(Updated: )
A security flaw was found in the way handlers for ftp:// and file:// URL schemes in the Python urllib and urllib2 extensible libraries processed the urllib open URL request. A remote attacker could use this flaw to access sensitive information or cause a denial of service (excessive CPU and memory use) of a Python web application, processing URLs, via a specially-crafted urllib open URL request.
Affected Software | Affected Version | How to fix |
---|---|---|
urllib3 | ||
urllib |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-690560 is classified as a security flaw which can potentially allow remote attackers to access sensitive information or cause a denial of service.
To mitigate REDHAT-BUG-690560, it is recommended to update to the latest version of Python urllib and urllib2 that addresses this issue.
REDHAT-BUG-690560 affects the handlers for ftp:// and file:// URL schemes in the Python urllib and urllib2 libraries.
Yes, a remote attacker can exploit REDHAT-BUG-690560 to access sensitive information or cause a denial of service.
The potential consequences of REDHAT-BUG-690560 include exposure of sensitive information and increased resource consumption leading to denial of service.