python off-by-one locale.strxfrm() (possible memory disclosure)
Published Apr 16, 2007
5.0
MEDIUMCVSS 2.0
EPSS 13.64%
Description
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect buffer size to be used for the strxfrm function, which allows context-dependent attackers to read portions of memory via unknown manipulations that trigger a buffer over-read due to missing null termination.
Affected products
No data.
No data.
Red Hat Enterprise Linux 2.1
python-0:1.5.2-43.72.2
Fixed · RHSA-2007:1077
Red Hat Enterprise Linux 3
python-0:2.2.3-6.8
Fixed · RHSA-2007:1076
Red Hat Enterprise Linux 4
python-0:2.3.4-14.4.el4_6.1
Fixed · RHSA-2007:1076
Red Hat Enterprise Linux 5
python-0:2.4.3-24.el5_3.6
Fixed · RHSA-2009:1176
Red Hat Network Satellite Server v 4.2
rhn-solaris-bootstrap-0:5.0.2-3
Fixed · RHSA-2008:0525
Red Hat Network Satellite Server v 4.2
rhn_solaris_bootstrap_5_0_2_3-0:1-0
Fixed · RHSA-2008:0525
Red Hat Network Satellite Server v 4.2 (RHEL3)
rhn-solaris-bootstrap-0:5.0.2-3
Fixed · RHSA-2008:0525
Red Hat Network Satellite Server v 4.2 (RHEL3)
rhn_solaris_bootstrap_5_0_2_3-0:1-0
Fixed · RHSA-2008:0525
Red Hat Network Satellite Server v 5.0
rhn-solaris-bootstrap-0:5.0.2-3
Fixed · RHSA-2008:0264
Red Hat Network Satellite Server v 5.0
rhn_solaris_bootstrap_5_0_2_3-0:1-0
Fixed · RHSA-2008:0264
Red Hat Network Satellite Server v 5.1
rhn-solaris-bootstrap-0:5.1.1-3
Fixed · RHSA-2008:0629
Red Hat Network Satellite Server v 5.1
rhn_solaris_bootstrap_5_1_1_3-0:1-0
Fixed · RHSA-2008:0629
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 2.1 | python-0:1.5.2-43.72.2 | Fixed | RHSA-2007:1077 |
| Red Hat Enterprise Linux 3 | python-0:2.2.3-6.8 | Fixed | RHSA-2007:1076 |
| Red Hat Enterprise Linux 4 | python-0:2.3.4-14.4.el4_6.1 | Fixed | RHSA-2007:1076 |
| Red Hat Enterprise Linux 5 | python-0:2.4.3-24.el5_3.6 | Fixed | RHSA-2009:1176 |
| Red Hat Network Satellite Server v 4.2 | rhn-solaris-bootstrap-0:5.0.2-3 | Fixed | RHSA-2008:0525 |
| Red Hat Network Satellite Server v 4.2 | rhn_solaris_bootstrap_5_0_2_3-0:1-0 | Fixed | RHSA-2008:0525 |
| Red Hat Network Satellite Server v 4.2 (RHEL3) | rhn-solaris-bootstrap-0:5.0.2-3 | Fixed | RHSA-2008:0525 |
| Red Hat Network Satellite Server v 4.2 (RHEL3) | rhn_solaris_bootstrap_5_0_2_3-0:1-0 | Fixed | RHSA-2008:0525 |
| Red Hat Network Satellite Server v 5.0 | rhn-solaris-bootstrap-0:5.0.2-3 | Fixed | RHSA-2008:0264 |
| Red Hat Network Satellite Server v 5.0 | rhn_solaris_bootstrap_5_0_2_3-0:1-0 | Fixed | RHSA-2008:0264 |
| Red Hat Network Satellite Server v 5.1 | rhn-solaris-bootstrap-0:5.1.1-3 | Fixed | RHSA-2008:0629 |
| Red Hat Network Satellite Server v 5.1 | rhn_solaris_bootstrap_5_1_1_3-0:1-0 | Fixed | RHSA-2008:0629 |
No package ranges for this CVE.
Remediation
Red Hat statement
The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:P/I:N/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (25 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 13.64% (0.13637) | 96.37th | v5 (v2026.06.15) |
| Aug 3, 2026 | 14.61% (0.14612) | 96.30th | v5 (v2026.06.15) |
| Jun 15, 2026 | 12.48% (0.12479) | 95.69th | v5 (v2026.06.15) |
| Jun 7, 2026 | 9.44% (0.09439) | 92.96th | v4 (v2025.03.14) |
| May 15, 2025 | 12.98% (0.12985) | 93.66th | v4 (v2025.03.14) |
| Mar 30, 2025 | 16.67% (0.16668) | 94.36th | v4 (v2025.03.14) |
| Mar 29, 2025 | 33.02% (0.33021) | 95.15th | v4 (v2025.03.14) |
| Mar 17, 2025 | 16.67% (0.16668) | 94.41th | v4 (v2025.03.14) |
| Mar 6, 2025 | 9.97% (0.09973) | 95.02th | v3 (v2023.03.01) |
| Dec 20, 2024 | 12.96% (0.12959) | 95.49th | v3 (v2023.03.01) |
| Dec 17, 2024 | 17.25% (0.17251) | 96.07th | v3 (v2023.03.01) |
| Oct 26, 2024 | 7.52% (0.07516) | 94.28th | v3 (v2023.03.01) |
| Jul 20, 2024 | 4.06% (0.04061) | 92.23th | v3 (v2023.03.01) |
| Mar 27, 2024 | 4.54% (0.04545) | 92.32th | v3 (v2023.03.01) |
| Feb 18, 2024 | 5.05% (0.05050) | 92.62th | v3 (v2023.03.01) |
| Jan 11, 2024 | 2.02% (0.02017) | 87.68th | v3 (v2023.03.01) |
| Oct 27, 2023 | 2.01% (0.02012) | 87.63th | v3 (v2023.03.01) |
| Sep 18, 2023 | 2.04% (0.02044) | 87.62th | v3 (v2023.03.01) |
| Aug 11, 2023 | 2.33% (0.02332) | 88.33th | v3 (v2023.03.01) |
| Aug 3, 2023 | 2.80% (0.02802) | 89.27th | v3 (v2023.03.01) |
| May 29, 2023 | 1.77% (0.01769) | 86.18th | v3 (v2023.03.01) |
| Mar 7, 2023 | 1.72% (0.01717) | 85.86th | v3 (v2023.03.01) |
| Mar 6, 2023 | 15.27% (0.15272) | 95.95th | v2 (v2022.01.01) |
| Apr 1, 2022 | 15.27% (0.15272) | 95.58th | v2 (v2022.01.01) |
| Feb 4, 2022 | 15.27% (0.15272) | 91.38th | v2 (v2022.01.01) |
References (42)
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=416934 x_refsource_CONFIRMThird Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2008/000005.html mailing-listx_refsource_MLISTThird Party Advisory
- http://secunia.com/advisories/25190 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/25217 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/25233 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/25353 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/25787 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/28027 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/28050 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/29032 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/29303 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/29889 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/31255 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/31492 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/37471 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://www.debian.org/security/2008/dsa-1551 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.debian.org/security/2008/dsa-1620 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:099 vendor-advisoryx_refsource_MANDRIVABroken LinkThird Party Advisory
- http://www.novell.com/linux/security/advisories/2007_13_sr.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://www.python.org/download/releases/2.5.1/NEWS.txt x_refsource_CONFIRMBroken LinkVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2007-1076.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2007-1077.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0629.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.securityfocus.com/archive/1/469294/30/6450/threaded mailing-listx_refsource_BUGTRAQThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/488457/100/0/threaded mailing-listx_refsource_BUGTRAQThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/507985/100/0/threaded mailing-listx_refsource_BUGTRAQThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/23887 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.trustix.org/errata/2007/0019/ vendor-advisoryx_refsource_TRUSTIXThird Party Advisory
- http://www.ubuntu.com/usn/usn-585-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- http://www.vmware.com/security/advisories/VMSA-2009-0016.html x_refsource_CONFIRMBroken LinkThird Party Advisory
- http://www.vupen.com/english/advisories/2007/1465 vdb-entryx_refsource_VUPENBroken LinkThird Party Advisory
- http://www.vupen.com/english/advisories/2008/0637 vdb-entryx_refsource_VUPENBroken LinkThird Party Advisory
- http://www.vupen.com/english/advisories/2009/3316 vdb-entryx_refsource_VUPENBroken LinkThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2007-2052 Vendor Advisory
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=235093 x_refsource_CONFIRMIssue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=235093 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34060 vdb-entryx_refsource_XFVDB Entry
- https://issues.rpath.com/browse/RPL-1358 x_refsource_CONFIRMThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-2052
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11716 vdb-entrysignaturex_refsource_OVALBroken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8353 vdb-entrysignaturex_refsource_OVALBroken Link
- https://www.cve.org/CVERecord?id=CVE-2007-2052
Change history (0)
No recorded changes yet.