Candidate: CVE-2010-1666 PublicDate: 2010-07-02 19:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1666 Description: Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/ubuntu/+source/python-cjson/+bug/585274 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=587700 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_python-cjson: upstream_python-cjson: needs-triage dapper_python-cjson: DNE hardy_python-cjson: released (1.0.5-1ubuntu0.8.04.1) jaunty_python-cjson: released (1.0.5-1ubuntu0.9.04.1) karmic_python-cjson: released (1.0.5-2ubuntu0.9.10.1) lucid_python-cjson: released (1.0.5-2ubuntu0.10.04.1) devel_python-cjson: released (1.0.5-2ubuntu1)