CVE-2024-6923

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.
Configurations

No configuration.

History

31 Jan 2025, 20:15

Type Values Removed Values Added
References
  • () https://github.com/python/cpython/commit/097633981879b3c9de9a1dd120d3aa585ecc2384 -

11 Jan 2025, 15:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/01/msg00005.html -

Information

Published : 2024-08-01 14:15

Updated : 2025-01-31 20:15


NVD link : CVE-2024-6923

Mitre link : CVE-2024-6923

CVE.ORG link : CVE-2024-6923


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')