CVE Vulnerabilities

CVE-2012-0845

Published: Oct 05, 2012 | Modified: Oct 25, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

SimpleXMLRPCServer.py in SimpleXMLRPCServer in Python before 2.6.8, 2.7.x before 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an XML-RPC POST request that contains a smaller amount of data than specified by the Content-Length header.

Affected Software

Name Vendor Start Version End Version
Python Python 2.4.2 2.4.2
Python Python 2.5.1 2.5.1
Python Python 2.3.4 2.3.4
Python Python 2.6.6 2.6.6
Python Python 2.1 2.1
Python Python 2.0.1 2.0.1
Python Python 2.6.1 2.6.1
Python Python 2.3.1 2.3.1
Python Python 0.9.1 0.9.1
Python Python 2.1.2 2.1.2
Python Python 0.9.0 0.9.0
Python Python 1.6.1 1.6.1
Python Python 2.2.1 2.2.1
Python Python 2.5.4 2.5.4
Python Python 1.3 1.3
Python Python 2.6.3 2.6.3
Python Python 2.2.2 2.2.2
Python Python 2.1.1 2.1.1
Python Python 1.5.2 1.5.2
Python Python 2.6.2150 2.6.2150
Python Python 2.3.3 2.3.3
Python Python 2.3.2 2.3.2
Python Python 1.6 1.6
Python Python 1.2 1.2
Python Python 2.4.6 2.4.6
Python Python 2.0 2.0
Python Python 2.2.3 2.2.3
Python Python * 2.6.7
Python Python 2.5.2 2.5.2
Python Python 2.3.7 2.3.7
Python Python 2.6.4 2.6.4
Python Python 2.6.6150 2.6.6150
Python Python 2.5.3 2.5.3
Python Python 2.4.4 2.4.4
Python Python 2.5.150 2.5.150
Python Python 2.2 2.2
Python Python 2.6.2 2.6.2
Python Python 2.5.6 2.5.6
Python Python 2.3.5 2.3.5
Python Python 2.1.3 2.1.3
Python Python 2.4.1 2.4.1
Python Python 2.4.3 2.4.3
Python Python 2.6.5 2.6.5

References