CVE-2010-1634
Publication date 27 May 2010
Last updated 4 August 2025
Ubuntu priority
Multiple integer overflows in audioop.c in the audioop module in Python 2.6, 2.7, 3.1, and 3.2 allow context-dependent attackers to cause a denial of service (application crash) via a large fragment, as demonstrated by a call to audioop.lin2lin with a long string in the first argument, leading to a buffer overflow. NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-3143.5.
Status
Package | Ubuntu Release | Status |
---|---|---|
python2.4 | ||
python2.5 | ||
python2.6 | ||
python2.7 | ||
python3.1 | ||
python3.2 | ||
Patch details
Package | Patch details |
---|---|
python2.5 | |
python2.6 | |
python3.1 |
References
Related Ubuntu Security Notices (USN)
- USN-1613-1
- Python 2.5 vulnerabilities
- 17 October 2012
- USN-1613-2
- Python 2.4 vulnerabilities
- 17 October 2012
- USN-1616-1
- Python 3.1 vulnerabilities
- 24 October 2012
- USN-1596-1
- Python 2.6 vulnerabilities
- 4 October 2012