CVE-2007-4965

Priority
Description
Multiple integer overflows in the imageop module in Python 2.5.1 and
earlier allow context-dependent attackers to cause a denial of service
(application crash) and possibly obtain sensitive information (memory
contents) via crafted arguments to (1) the tovideo method, and unspecified
other vectors related to (2) imageop.c, (3) rbgimgmodule.c, and other
files, which trigger heap-based buffer overflows.
Notes
 jdstrand> bug report has debdiffs
Package
Upstream:needs-triage
Package
Upstream:needs-triage
Package
Upstream:needs-triage
Package
Upstream:needs-triage
Patches:
Debdiff:https://bugs.launchpad.net/ubuntu/gutsy/+source/python2.5/+bug/163845
More Information

Updated: 2019-03-19 11:43:42 UTC (commit 15472795df7e9de45b82f2d36b8b419b939f97b2)