CVE-2021-3733Medium· 6.5▾ SunlitThere's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects to, could trigger a Regular Expression Denial of Service (ReDOS) during an aut…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 35.8 · likelihood 0.9 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
4.7%
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects to, could trigger a Regular Expression Denial of Service (ReDOS) during an authentication request with a specially crafted payload that is sent by the server to the client. The greatest threat that this flaw poses is to application availability.
python < 3.6.14python >= 3.7.0, < 3.7.11python >= 3.8.0, < 3.8.10python >= 3.9.0, < 3.9.5python = 3.10.0codeready_linux_builder = 8.0codeready_linux_builder_for_ibm_z_systems = 8.0codeready_linux_builder_for_power_little_endian = 8.0enterprise_linux = 8.0enterprise_linux_eus = 8.4enterprise_linux_for_ibm_z_systems = 8.0enterprise_linux_for_ibm_z_systems_eus = 8.4enterprise_linux_for_power_little_endian = 8.0enterprise_linux_for_power_little_endian_eus = 8.4enterprise_linux_server_aus = 8.4enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions = 8.4enterprise_linux_server_tus = 8.4enterprise_linux_server_update_services_for_sap_solutions = 8.4extra_packages_for_enterprise_linux = 7.0fedora = 33fedora = 34fedora = 35fedora = 36management_services_for_element_software_and_netapp_hciontap_select_deploy_administration_utilitysolidfire,_enterprise_sds_&_hci_storage_nodehci_compute_node_firmwareUpgrade past the affected range:
python 3.9.5Connected by shared product, vendor, weakness, or advisory.
CVE-2015-20107High· 7.6In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file
CVE-2020-10735High· 7.5A flaw was found in python
CVE-2020-8492Medium· 6.5Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1 allows an HTTP server to conduct Regular Expression Denial of Service (ReDoS) attacks against a client because of urllib.request.A…
CVE-2020-26116High· 7.2http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in…
CVE-2019-20907High· 7.5In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened by tarfile.open, because _proc_pax lacks header validation.
CVE-2021-29921Critical· 9.8In Python before 3,9,5, the ipaddress library mishandles leading zero characters in the octets of an IP address string