Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-6923

Published: August 2, 2024Last modified: September 20, 2024

Description

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

Severity score breakdown

ParameterValue
Base score5.5
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredLOW
User interactionREQUIRED
ScopeUNCHANGED
ConfidentialityLOW
Integrity impactLOW
Availability impactLOW
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSpython3Fixed (3.11.10-r1)

References

ON THIS PAGE