Hide Forgot
A security flaw was found in the way handlers for ftp:// and file:// URL schemes in the Python urllib and urllib2 extensible libraries processed the urllib open URL request. A remote attacker could use this flaw to access sensitive information or cause a denial of service (excessive CPU and memory use) of a Python web application, processing URLs, via a specially-crafted urllib open URL request.
Upstream bug report with the details: [1] http://bugs.python.org/issue11662
CVE Request: [2] http://www.openwall.com/lists/oss-security/2011/03/24/5
Created python tracking bugs for this issue Affects: fedora-all [bug 690570]
The CVE identifier of CVE-2011-1521 has been assigned to this issue (http://www.openwall.com/lists/oss-security/2011/03/28/2).
This issue has been addressed in following products: Red Hat Enterprise Linux 5 Via RHSA-2011:0492 https://rhn.redhat.com/errata/RHSA-2011-0492.html
This issue has been addressed in following products: Red Hat Enterprise Linux 4 Via RHSA-2011:0491 https://rhn.redhat.com/errata/RHSA-2011-0491.html
This issue has been addressed in following products: Red Hat Enterprise Linux 6 Via RHSA-2011:0554 https://rhn.redhat.com/errata/RHSA-2011-0554.html