CVE-2008-2316
Publication date 1 August 2008
Last updated 24 July 2024
Ubuntu priority
Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attackers to defeat cryptographic digests, related to “partial hashlib hashing of data exceeding 4GB.”
Status
Package | Ubuntu Release | Status |
---|---|---|
python2.4 | 8.04 LTS hardy |
Not affected
|
7.10 gutsy |
Not affected
|
|
7.04 feisty |
Not affected
|
|
6.06 LTS dapper |
Not affected
|
|
python2.5 | 8.04 LTS hardy |
Fixed 2.5.2-2ubuntu4.1
|
7.10 gutsy |
Fixed 2.5.1-5ubuntu5.2
|
|
7.04 feisty |
Fixed 2.5.1-0ubuntu1.2
|
|
6.06 LTS dapper | Not in release |