CVE Vulnerabilities

CVE-2012-0845

Published: Oct 05, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
5 MODERATE
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

SimpleXMLRPCServer.py in SimpleXMLRPCServer in Python before 2.6.8, 2.7.x before 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an XML-RPC POST request that contains a smaller amount of data than specified by the Content-Length header.

Affected Software

NameVendorStart VersionEnd Version
PythonPython*2.6.7 (including)
PythonPython0.9.0 (including)0.9.0 (including)
PythonPython0.9.1 (including)0.9.1 (including)
PythonPython1.2 (including)1.2 (including)
PythonPython1.3 (including)1.3 (including)
PythonPython1.5.2 (including)1.5.2 (including)
PythonPython1.6 (including)1.6 (including)
PythonPython1.6.1 (including)1.6.1 (including)
PythonPython2.0 (including)2.0 (including)
PythonPython2.0.1 (including)2.0.1 (including)
PythonPython2.1 (including)2.1 (including)
PythonPython2.1.1 (including)2.1.1 (including)
PythonPython2.1.2 (including)2.1.2 (including)
PythonPython2.1.3 (including)2.1.3 (including)
PythonPython2.2 (including)2.2 (including)
PythonPython2.2.1 (including)2.2.1 (including)
PythonPython2.2.2 (including)2.2.2 (including)
PythonPython2.2.3 (including)2.2.3 (including)
PythonPython2.3.1 (including)2.3.1 (including)
PythonPython2.3.2 (including)2.3.2 (including)
PythonPython2.3.3 (including)2.3.3 (including)
PythonPython2.3.4 (including)2.3.4 (including)
PythonPython2.3.5 (including)2.3.5 (including)
PythonPython2.3.7 (including)2.3.7 (including)
PythonPython2.4.1 (including)2.4.1 (including)
PythonPython2.4.2 (including)2.4.2 (including)
PythonPython2.4.3 (including)2.4.3 (including)
PythonPython2.4.4 (including)2.4.4 (including)
PythonPython2.4.6 (including)2.4.6 (including)
PythonPython2.5.1 (including)2.5.1 (including)
PythonPython2.5.2 (including)2.5.2 (including)
PythonPython2.5.3 (including)2.5.3 (including)
PythonPython2.5.4 (including)2.5.4 (including)
PythonPython2.5.6 (including)2.5.6 (including)
PythonPython2.5.150 (including)2.5.150 (including)
PythonPython2.6.1 (including)2.6.1 (including)
PythonPython2.6.2 (including)2.6.2 (including)
PythonPython2.6.3 (including)2.6.3 (including)
PythonPython2.6.4 (including)2.6.4 (including)
PythonPython2.6.5 (including)2.6.5 (including)
PythonPython2.6.6 (including)2.6.6 (including)
PythonPython2.6.2150 (including)2.6.2150 (including)
PythonPython2.6.6150 (including)2.6.6150 (including)
Red Hat Enterprise Linux 6RedHatpython-0:2.6.6-29.el6_2.2*
Python2.4Ubuntuhardy*
Python2.5Ubuntuhardy*
Python2.6Ubuntulucid*
Python2.6Ubuntumaverick*
Python2.6Ubuntunatty*
Python2.6Ubuntuoneiric*
Python2.6Ubuntuupstream*
Python2.7Ubuntumaverick*
Python2.7Ubuntunatty*
Python2.7Ubuntuoneiric*
Python2.7Ubuntuupstream*
Python3.1Ubuntulucid*
Python3.1Ubuntumaverick*
Python3.1Ubuntunatty*
Python3.2Ubuntunatty*
Python3.2Ubuntuoneiric*
Python3.2Ubuntuupstream*

References