An exploitable denial-of-service vulnerability exists in the X509 certificate parser of Python.org Python 2.7.11 / 3.6.6. A specially crafted X509 certificate can cause a NULL pointer dereference, resulting in a denial of service. An attacker can initiate or accept TLS connections using crafted certificates to trigger this vulnerability.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2019-10-31 21:15
Updated : 2024-11-21 04:44
NVD link : CVE-2019-5010
Mitre link : CVE-2019-5010
CVE.ORG link : CVE-2019-5010
JSON object : View
Products Affected
debian
- debian_linux
redhat
- enterprise_linux_server_aus
- enterprise_linux_eus
- enterprise_linux
- enterprise_linux_server_tus
python
- python
opensuse
- leap
CWE
CWE-476
NULL Pointer Dereference