CVE-2013-1752: nntplib unlimited read

Unlimited read from connection in nntplib.

  • Disclosure date: 2012-09-25 (Python issue #16040 reported)
  • Red Hat impact: Moderate

Fixed In

Python issue

nntplib: unlimited readline() from connection.

  • Python issue: issue #16040
  • Creation date: 2012-09-25
  • Reporter: Christian Heimes

Timeline

Timeline using the disclosure date 2012-09-25 as reference:

  • 2012-09-25: Python issue #16040 reported by Christian Heimes
  • 2013-09-30 (+370 days): commit 42faa55
  • 2013-10-29 (+399 days): Python 2.6.9 released
  • 2013-11-10 (+411 days): Python 2.7.6 released
  • 2014-10-11 (+746 days): Python 3.2.6 released
  • 2014-10-12 (+747 days): commit b3ac843
  • 2015-02-23 (+881 days): Python 3.4.3 released
  • 2015-09-09: Python 3.5.0 released
  • 2017-09-19 (+1820 days): Python 3.3.7 released