Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Mageia 7: MGASA-2021-0064 Critical: Python Buffer Overflow Threat

mageia
Calendar Grey February 4, 2021
Dist Mageia Esm H88
Severe vulnerability identified in Python's ctypes library, posing risks of system instability and possible service outages.
A flaw was found in python

Summary

A flaw was found in python. A stack-based buffer overflow was discovered in the ctypes module provided within Python. Applications that use ctypes without carefully validating the input passed to it may be vulnerable to this flaw, which would allow an attacker to overflow a buffer on the stack and crash the application. The highest threat from this vulnerability is to system availability (CVE-2021-3177).

References

- https://bugs.mageia.org/show_bug.cgi?id=28204

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/MGSV6BJQLRQ6RKVUXK7JGU7TP4QFGQXC/

- https://www.cve.org/CVERecord?id=CVE-2021-3177

Resolution

SRPMS

- 7/core/python-2.7.18-1.2.mga7

- 7/core/python3-3.7.9-1.2.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 04 Feb 2021
URL: https://advisories.mageia.org/MGASA-2021-0064.html
Type: security
CVE: CVE-2021-3177

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here