ZeroHour

CVE-2018-1060

PoC
CVSS 3.1
7.5 high
EPSS
5%p92
Published
()
Modified
Description

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service.

Vendors
pythonfedoraprojectcanonicalredhatdebian
Products
python, fedora, ubuntu linux, ansible tower, enterprise linux desktop, enterprise linux server, enterprise linux workstation, debian linux
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.