Back

HIGH

python: integer signedness error in the zlib extension module

Published Apr 10, 2008

Description

Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a negative signed integer, which triggers insufficient memory allocation and a buffer overflow.

Affected products

Remediation

Red Hat statement

Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=442005 The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Metrics

Weaknesses (1)

References (37)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 10, 2008
Updated Aug 7, 2024
Reserved Apr 10, 2008
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Apr 9, 2008