CVE-2014-7143

Severity
7.5HIGH
EPSS
0.4%
top 42.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 12
Latest updateDec 17

Description

Python Twisted 14.0 trustRoot is not respected in HTTP client

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

PyPITwisted14.0.014.0.1
PyPItwisted14.0.014.0.1
Debiantwisted< 14.0.2-1+3
NVDtwisted/twisted14.0.0

🔴Vulnerability Details

4
OSV
Python Twisted trustRoot is not respected in HTTP client2019-12-17
GHSA
Python Twisted trustRoot is not respected in HTTP client2019-12-17
CVEList
CVE-2014-7143: Python Twisted 142019-11-12
OSV
CVE-2014-7143: Python Twisted 142019-11-12

📋Vendor Advisories

2
Red Hat
python-twisted-web: specified trustRoot not respected2014-09-17
Debian
CVE-2014-7143: twisted - Python Twisted 14.0 trustRoot is not respected in HTTP client2014

💬Community

1
Bugzilla
CVE-2014-7143 python-twisted-web: specified trustRoot not respected2014-09-18