CVE Vulnerabilities

CVE-2013-1753

Published: Mar 11, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The gzip_decode function in the xmlrpc client library in Python 3.4 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP request.

Affected Software

NameVendorStart VersionEnd Version
PythonPython2.7.0 (including)2.7.9 (excluding)
PythonPython3.2.0 (including)3.2.6 (excluding)
PythonPython3.3.0 (including)3.3.6 (excluding)
PythonPython3.4.0 (including)3.4.3 (excluding)
Red Hat Enterprise Linux 7RedHatpython-0:2.7.5-34.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-0:1.1-17.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-python-0:2.7.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-python-pip-0:1.5.6-5.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-python-setuptools-0:0.9.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-python-simplejson-0:3.2.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatpython27-python-wheel-0:0.24.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-0:1.1-17.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-python-0:2.7.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-python-pip-0:1.5.6-5.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-python-setuptools-0:0.9.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-python-simplejson-0:3.2.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUSRedHatpython27-python-wheel-0:0.24.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-0:1.1-17.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-python-0:2.7.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-python-pip-0:1.5.6-5.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-python-setuptools-0:0.9.8-3.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-python-simplejson-0:3.2.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUSRedHatpython27-python-wheel-0:0.24.0-2.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-0:1.1-20.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-python-0:2.7.8-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-python-pip-0:1.5.6-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-python-setuptools-0:0.9.8-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-python-simplejson-0:3.2.0-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatpython27-python-wheel-0:0.24.0-2.el7*
Python2.7Ubuntuesm-infra-legacy/trusty*
Python2.7Ubuntuprecise*
Python2.7Ubuntutrusty*
Python2.7Ubuntutrusty/esm*
Python2.7Ubuntuupstream*
Python2.7Ubuntuutopic*
Python3.2Ubuntuprecise*
Python3.4Ubuntuesm-infra-legacy/trusty*
Python3.4Ubuntutrusty*
Python3.4Ubuntutrusty/esm*
Python3.4Ubuntuupstream*
Python3.4Ubuntuutopic*

References