CVE Database
/

CVE-2013-7338

Back to search

CVE-2013-7338

Published: Apr 22, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Python before 3.3.4 RC1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a file size value larger than the size of the zip file to the (1) ZipExtFile.read, (2) ZipExtFile.read(n), (3) ZipExtFile.readlines, (4) ZipFile.extract, or (5) ZipFile.extractall function.

VendorProductVersions

n/a

n/a

affected
n/a

References

65179
vdb-entry
x_refsource_BID
openSUSE-SU-2014:0597
vendor-advisory
x_refsource_SUSE
GLSA-201503-10
vendor-advisory
x_refsource_GENTOO
APPLE-SA-2015-08-13-2
vendor-advisory
x_refsource_APPLE
1029973
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now