It was discovered that the Python email module incorrectly parsed email
addresses that contain special characters. A remote attacker could possibly
use this issue to bypass certain protection mechanisms. (CVE-2023-27043)
It was discovered that Python allowed excessive backtracking while parsing
certain tarfile headers. A remote attacker could possibly use this issue to
cause Python to consume resources, leading to a denial of service.
(CVE-2024-6232)
It was discovered that the Python email module incorrectly quoted newlines
for email headers. A remote attacker could possibly use this issue to
perform header injection. (CVE-2024-6923)
It was discovered that the Python http.cookies module incorrectly handled
parsing cookies that contained backslashes for quoted characters. A remote
attacker could possibly use this issue to cause Python to consume
resources, leading to a denial of service. (CVE-2024-7592)
It was discovered that the Python zipfile module incorrectly handled
certain malformed zip files. A remote attacker could possibly use this
issue to cause Python to stop responding, resulting in a denial of service.
(CVE-2024-8088)
More Stories
php-tcpdf-6.9.1-1.fc40
FEDORA-2025-b5809de628 Packages in this update: php-tcpdf-6.9.1-1.fc40 Update description: Version 6.9.1 (2025-04-03) Fixed Path Traversal security vulnerability reported by Positive Technologies....
php-tcpdf-6.9.1-1.fc42
FEDORA-2025-39c7a4c7ce Packages in this update: php-tcpdf-6.9.1-1.fc42 Update description: Version 6.9.1 (2025-04-03) Fixed Path Traversal security vulnerability reported by Positive Technologies....
php-tcpdf-6.9.1-1.fc41
FEDORA-2025-85549e07c8 Packages in this update: php-tcpdf-6.9.1-1.fc41 Update description: Version 6.9.1 (2025-04-03) Fixed Path Traversal security vulnerability reported by Positive Technologies....
perl-Crypt-URandom-Token-0.003-1.fc41 perl-DBIx-Class-EncodedColumn-0.11000-1.fc41
FEDORA-2025-0a8c805972 Packages in this update: perl-Crypt-URandom-Token-0.003-1.fc41 perl-DBIx-Class-EncodedColumn-0.11000-1.fc41 Update description: Needed for perl-DBIx-Class-EncodedColumn-0.11 Read More
USN-7410-1: Tomcat vulnerability
It was discovered that Tomcat incorrectly handled request cancellation. A remote attacker could possibly use this issue to cause tomcat9...
USN-7417-1: libdbd-mysql-perl vulnerabilities
It was discovered that libdbd-mysql-perl did not correctly handle certain SQL queries. An attacker could possibly use this issue to...