CVE-2012-2921
Publication date 21 May 2012
Last updated 24 July 2024
Ubuntu priority
Universal Feed Parser (aka feedparser or python-feedparser) before 5.1.2 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML ENTITY declaration in a non-ASCII encoded document.
Status
Package | Ubuntu Release | Status |
---|---|---|
feedparser | 13.10 saucy |
Fixed 5.1-0ubuntu4
|
13.04 raring |
Fixed 5.1-0ubuntu4
|
|
12.10 quantal |
Fixed 5.1-0ubuntu4
|
|
12.04 LTS precise |
Fixed 5.1-0ubuntu3.1
|
|
11.10 oneiric | Ignored end of life | |
11.04 natty | Ignored end of life | |
10.04 LTS lucid | Ignored end of life | |
8.04 LTS hardy | Ignored end of life |
Patch details
Package | Patch details |
---|---|
feedparser |
References
Related Ubuntu Security Notices (USN)
- USN-1449-1
- feedparser vulnerability
- 22 May 2012