Lucene search

K
cveMitreCVE-2004-0150
HistorySep 01, 2004 - 4:00 a.m.

CVE-2004-0150

2004-09-0104:00:00
CWE-120
mitre
web.nvd.nist.gov
36
cve-2004-0150
python 2.2
buffer overflow
getaddrinfo
remote code execution
nvd
ipv6

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.068

Percentile

93.9%

Buffer overflow in the getaddrinfo function in Python 2.2 before 2.2.2, when IPv6 support is disabled, allows remote attackers to execute arbitrary code via an IPv6 address that is obtained using DNS.

Affected configurations

Nvd
Node
pythonpythonRange2.2.02.2.2
VendorProductVersionCPE
pythonpython*cpe:2.3:a:python:python:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.068

Percentile

93.9%