Lucene search

K
osvGoogleOSV:USN-4754-2
HistoryFeb 25, 2021 - 6:54 p.m.

python2.7 regression

2021-02-2518:54:00
Google
osv.dev
5

9.8 High

AI Score

Confidence

High

0.038 Low

EPSS

Percentile

92.0%

USN-4754-1 fixed a vulnerability in Python. The fix for CVE-2021-3177 introduced a
regression in Python 2.7. This update reverts the security fix pending further investigation.

We apologize for the inconvenience.

Original advisory details:

It was discovered that Python incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code
or cause a denial of service. (CVE-2020-27619, CVE-2021-3177)