CVE Vulnerabilities

CVE-2022-31799

Improper Handling of Exceptional Conditions

Published: Jun 02, 2022 | Modified: Nov 21, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Bottle before 0.12.20 mishandles errors during early request binding.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

NameVendorStart VersionEnd Version
BottleBottlepy*0.12.20 (excluding)
Python-bottleUbuntubionic*
Python-bottleUbuntuesm-apps/bionic*
Python-bottleUbuntuesm-apps/focal*
Python-bottleUbuntuesm-apps/jammy*
Python-bottleUbuntuesm-apps/xenial*
Python-bottleUbuntuesm-infra-legacy/trusty*
Python-bottleUbuntufocal*
Python-bottleUbuntuimpish*
Python-bottleUbuntujammy*
Python-bottleUbuntutrusty/esm*
Python-bottleUbuntuupstream*
Python-bottleUbuntuxenial*

References