CVE-2013-4409
published 2019-11-04CVE-2013-4409: An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests.
PriorityP348critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
3.62%
88.3th percentile
An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| python_software_foundation_beanbag | djblets | — | — |
| python_software_foundation_beanbag | review_board | — | — |
| redhat | enterprise_linux | — | — |
| reviewboard | djblets | — | — |
| reviewboard | djblets | >= 0 < 0.7.21 | 0.7.21 |
| reviewboard | djblets | >= 0 < 0.6.30 | 0.6.30 |
| reviewboard | djblets | >= 0.7.0 < 0.7.19 | 0.7.19 |
| reviewboard | review_board | < 1.7.15 | 1.7.15 |
| reviewboard | reviewboard | >= 0 < 1.7.15 | 1.7.15 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
ReviewBoard and Djblets library are vulnerable to code execution
ghsa·2022-05-05
CVE-2013-4409 [CRITICAL] CWE-20 ReviewBoard and Djblets library are vulnerable to code execution
ReviewBoard and Djblets library are vulnerable to code execution
An eval() vulnerability exists in Python Software Foundation Djblets version before 0.6.30 and 0.7.0 before 0.7.19 and Beanbag Review Board before 1.7.15 when parsing JSON requests allowing an attacker to execute arbitrary Python code.
OSV
ReviewBoard and Djblets library are vulnerable to code execution
osv·2022-05-05
CVE-2013-4409 [CRITICAL] ReviewBoard and Djblets library are vulnerable to code execution
ReviewBoard and Djblets library are vulnerable to code execution
An eval() vulnerability exists in Python Software Foundation Djblets version before 0.6.30 and 0.7.0 before 0.7.19 and Beanbag Review Board before 1.7.15 when parsing JSON requests allowing an attacker to execute arbitrary Python code.
OSV
CVE-2013-4409: An eval() vulnerability exists in Python Software Foundation Djblets 0
osv·2019-11-04
CVE-2013-4409 CVE-2013-4409: An eval() vulnerability exists in Python Software Foundation Djblets 0
An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [epel-6]
bugzilla·2013-10-10·CVSS 9.8
CVE-2013-4409 [CRITICAL] CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [epel-6]
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
epel-6 tracking bug for pyth
Bugzilla
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [fedora-all]
bugzilla·2013-10-10·CVSS 9.8
CVE-2013-4409 [CRITICAL] CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [fedora-all]
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affec
Bugzilla
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability
bugzilla·2013-10-08·CVSS 9.8
CVE-2013-4409 [CRITICAL] CVE-2013-4409 python-djblets: unsanitized eval() vulnerability
CVE-2013-4409 python-djblets: unsanitized eval() vulnerability
=== Summary ===
Occasionally objects would be transmitted as a repr() of an object
instead of a JSON serialization. In order to restore this
representation to python code while parsing the JSON, Djblets would
use the eval() routine to execute them, leading to a risk of executing
arbitrary code in the Review Board process.
=== Affected Deployments ===
All Djblets deployments (and therefore all existing Review Board
deployments) are vulnerable to this flaw.
=== Scope ===
A remote attacker might be able to construct a JSON request containing
malicious python code that could be executed within the mod_wsgi
process on the server. It is unknown to what extent it could cause
damage, but denial-of-service at the minimum.
=== Resolu
http://lists.fedoraproject.org/pipermail/package-announce/2013-November/120619.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119819.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119820.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119830.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119831.htmlhttp://www.securityfocus.com/bid/63029https://access.redhat.com/security/cve/cve-2013-4409https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4409https://exchange.xforce.ibmcloud.com/vulnerabilities/88059https://security-tracker.debian.org/tracker/CVE-2013-4409http://lists.fedoraproject.org/pipermail/package-announce/2013-November/120619.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119819.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119820.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119830.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119831.htmlhttp://www.securityfocus.com/bid/63029https://access.redhat.com/security/cve/cve-2013-4409https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4409https://exchange.xforce.ibmcloud.com/vulnerabilities/88059https://security-tracker.debian.org/tracker/CVE-2013-4409
2019-11-04
Published