Python是Python软件基金会的一套开源的、面向对象的程序设计语言。该语言具有可扩展、支持模块和包、支持多种平台等特点。 Python 2.7.11版本和3.7.2版本中的X509证书解析器存在代码问题漏洞。攻击者可借助特制的X509凭证利用该漏洞造成拒绝服务(空指针逆向引用)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Python | Python.org CPython 2.7.11 Python.org CPython 3.6.6 Python.org CPython 3.5.2 Python.org CPython 3 master at 480833808e918a1dcebbbcfd07d5a8de3c5c2a66 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2019-5010 Exploit PoC - Python Denial of Service via Malformed X.509v3 Extension | https://github.com/JonathanWilbur/CVE-2019-5010 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2019-5151 | 10.0 CRITICAL | YouPHPTube SQL注入漏洞 |
| CVE-2019-5150 | 8.9 HIGH | YouPHPTube SQL注入漏洞 |
| CVE-2019-18368 | JetBrains Toolbox 安全漏洞 | |
| CVE-2019-18420 | Xen 格式化字符串错误漏洞 | |
| CVE-2019-18425 | Xen 安全漏洞 | |
| CVE-2019-18422 | Xen 安全漏洞 | |
| CVE-2019-18423 | Xen 输入验证错误漏洞 | |
| CVE-2019-18424 | Xen 操作系统命令注入漏洞 | |
| CVE-2019-18421 | Xen 竞争条件问题漏洞 | |
| CVE-2019-18366 | JetBrains TeamCity 安全漏洞 | |
| CVE-2019-18367 | JetBrains TeamCity 安全漏洞 | |
| CVE-2010-2490 | Mumble 输入验证错误漏洞 | |
| CVE-2019-18365 | JetBrains TeamCity 安全漏洞 | |
| CVE-2019-18369 | JetBrains YouTrack 安全漏洞 | |
| CVE-2009-5043 | burn 安全漏洞 | |
| CVE-2009-5041 | OVERKILL Software overkill 缓冲区错误漏洞 | |
| CVE-2009-5042 | python-docutils 安全漏洞 | |
| CVE-2019-12612 | Bitdefender BOX 输入验证错误漏洞 | |
| CVE-2019-16251 | WordPress YIT Plugin Framework 安全漏洞 | |
| CVE-2019-18465 | Progress Software MOVEit Transfer 访问控制错误漏洞 |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet