CVE-2008-4864

Publication date 31 October 2008

Last updated 24 July 2024


Ubuntu priority

Description

Multiple integer overflows in imageop.c in the imageop module in Python 1.5.2 through 2.5.1 allow context-dependent attackers to break out of the Python VM and execute arbitrary code via large integer values in certain arguments to the crop function, leading to a buffer overflow, a different vulnerability than CVE-2007-4965 and CVE-2008-1679.

Read the notes from the security team

Status

Package Ubuntu Release Status
python2.2 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper Ignored end of life
python2.3 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper Ignored end of life
python2.4 9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Fixed 2.4.5-5ubuntu1.1
8.04 LTS hardy
Fixed 2.4.5-1ubuntu4.2
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper
Fixed 2.4.3-0ubuntu6.3
python2.5 9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Not affected
8.04 LTS hardy
Fixed 2.5.2-2ubuntu6
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper Not in release

Notes


mdeslaur

this was actually fixed in 2.5.3 regression: http://bugs.python.org/issue4317 PoC: http://scary.beasts.org/security/CESA-2008-008.html

References

Related Ubuntu Security Notices (USN)

    • USN-806-1
    • Python vulnerabilities
    • 23 July 2009

Other references