Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2008-1887

N/A

Python 2.5.2 and earlier allows context-dependent attackers to execute arbitrary code via multiple vectors that cause a negative size value to be provided to the PyString_FromStringAndSize function, which allocates less memory than expected when assert() is disabled and triggers a buffer overflow.

EPSS 6.29% above median percentile 92.9%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

Vulnerable CPE configurations (1)
Vendor Product Versions
python python
All platforms (wildcard)
≤2.5.2
View on NVD ↗ Advisory · bugs.python.org Advisory · www.debian.org Advisory · www.securityfocus.com