Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function.
References
Configurations
History
21 Nov 2024, 01:14
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/40335 - Vendor Advisory | |
References | () http://secunia.com/advisories/40500 - | |
References | () http://www.debian.org/security/2010/dsa-2068 - | |
References | () http://www.vupen.com/english/advisories/2010/1774 - | |
References | () https://bugs.launchpad.net/ubuntu/+source/python-cjson/+bug/585274 - |
Information
Published : 2010-07-02 19:00
Updated : 2024-11-21 01:14
NVD link : CVE-2010-1666
Mitre link : CVE-2010-1666
CVE.ORG link : CVE-2010-1666
JSON object : View
Products Affected
dan_pascu
- python-cjson
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer