Search CVE reports


Toggle filters

11 – 12 of 12 results


CVE-2013-2099

Low priority

Some fixes available 5 of 41

Algorithmic complexity vulnerability in the ssl.match_hostname function in Python 3.2.x, 3.3.x, and earlier, and unspecified versions of python-backports-ssl_match_hostname as used for older Python versions, allows remote...

10 affected packages

bzr, w3af, linkchecker, python-tornado, python-urllib3...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bzr Not affected Not affected Not affected Not affected
w3af Not in release Not in release Not in release Not in release
linkchecker Not affected Not affected Not in release Not affected
python-tornado Not affected Not affected Not affected Not affected
python-urllib3 Not affected Not affected Not affected Not affected
python2.7 Not in release Not affected Not affected Not affected
python3.1 Not in release Not in release Not in release Not in release
python3.2 Not in release Not in release Not in release Not in release
python3.3 Not in release Not in release Not in release Not in release
zeroinstall-injector Not affected Not affected Not affected Not affected
Show all 10 packages Show less packages

CVE-2012-2374

Medium priority
Fixed

CRLF injection vulnerability in the tornado.web.RequestHandler.set_header function in Tornado before 2.2.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via crafted input.

1 affected package

python-tornado

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-tornado
Show less packages