CVE-2022-48560
published 2023-08-22CVE-2022-48560: A use-after-free exists in Python through 3.9 via heappushpop in heapq.
PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.77%
75.6th percentile
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | python2.7 | < python2.7 2.7.18-8+deb11u1 (bullseye) | python2.7 2.7.18-8+deb11u1 (bullseye) |
| debian | python3.9 | < python2.7 2.7.18-8+deb11u1 (bullseye) | python2.7 2.7.18-8+deb11u1 (bullseye) |
| python | python | < 3.6.11 | 3.6.11 |
| python | python | — | — |
| python | python | >= 3.7.0 < 3.7.7 | 3.7.7 |
| python | python | >= 3.8.0 < 3.8.2 | 3.8.2 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.6HIGH
vendor_ubuntu7.6HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
python2.7 vulnerabilities
osv·2025-01-06·CVSS 7.5
CVE-2022-48560 [HIGH] python2.7 vulnerabilities
python2.7 vulnerabilities
It was discovered that Python incorrectly handled certain scripts.
An attacker could possibly use this issue to execute arbitrary code
or cause a crash. (CVE-2022-48560)
It was discovered that Python did not properly handle XML entity
declarations in plist files. An attacker could possibly use this
vulnerability to perform an XML External Entity (XXE) injection,
resulting in a denial of service or information disclosure.
(CVE-2022-48565)
It was discovered that Python did not properly provide constant-time
processing for a crypto operation. An attacker could possibly use this
issue to perform a timing attack and recover sensitive information.
(CVE-2022-48566)
It was discovered that Python incorrectly handled certain inputs. If a
user or an automated system were
OSV
python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
osv·2024-07-11·CVSS 7.6
CVE-2015-20107 [HIGH] python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
It was discovered that Python incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code.
This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.
(CVE-2015-20107)
It was discovered that Python incorrectly used regular expressions
vulnerable to catastrophic backtracking. A remote attacker could possibly
use this issue to cause a denial of service. This issue only affected
Ubuntu 14.04 LTS. (CVE-2018-1060, CVE-2018-1061)
It was discovered that Python failed to initialize Expat’s hash salt. A
remote attacker could possibly use this issue to cause hash collisions,
leading to a denial of service. This issue only affected Ubuntu 14.04 L
OSV
CVE-2022-48560: A use-after-free exists in Python through 3
osv·2023-08-22·CVSS 7.5
CVE-2022-48560 [HIGH] CVE-2022-48560: A use-after-free exists in Python through 3
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
GHSA
GHSA-pvw5-cvp6-cv92: A use-after-free exists in Python through 3
ghsa_unreviewed·2023-08-22
CVE-2022-48560 [HIGH] CWE-416 GHSA-pvw5-cvp6-cv92: A use-after-free exists in Python through 3
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
Ubuntu
Python vulnerabilities
vendor_ubuntu·2025-01-06·CVSS 7.5
CVE-2022-48560 [HIGH] Python vulnerabilities
Title: Python vulnerabilities
Summary: Several security issues were fixed in Python 2.7.
It was discovered that Python incorrectly handled certain scripts.
An attacker could possibly use this issue to execute arbitrary code
or cause a crash. (CVE-2022-48560)
It was discovered that Python did not properly handle XML entity
declarations in plist files. An attacker could possibly use this
vulnerability to perform an XML External Entity (XXE) injection,
resulting in a denial of service or information disclosure.
(CVE-2022-48565)
It was discovered that Python did not properly provide constant-time
processing for a crypto operation. An attacker could possibly use this
issue to perform a timing attack and recover sensitive information.
(CVE-2022-48566)
It was discovered that Python incorrect
Ubuntu
Python vulnerabilities
vendor_ubuntu·2024-07-11·CVSS 7.6
CVE-2021-29921 [HIGH] Python vulnerabilities
Title: Python vulnerabilities
Summary: Several security issues were fixed in Python.
It was discovered that Python incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code.
This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.
(CVE-2015-20107)
It was discovered that Python incorrectly used regular expressions
vulnerable to catastrophic backtracking. A remote attacker could possibly
use this issue to cause a denial of service. This issue only affected
Ubuntu 14.04 LTS. (CVE-2018-1060, CVE-2018-1061)
It was discovered that Python failed to initialize Expat’s hash salt. A
remote attacker could possibly use this issue to cause hash collisions,
leading to a denial of service. This issue only affected Ubuntu 14.04 LTS.
(CVE-2018-14647)
Ubuntu
Python vulnerability
vendor_ubuntu·2023-10-17
CVE-2022-48560 Python vulnerability
Title: Python vulnerability
Summary: Python could be made to execute arbitrary code if it received
a specially crafted script.
USN-6394-1 fixed a vulnerability in Python. This update provides
the corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
Original advisory details:
It was discovered that Python incorrectly handled certain scripts.
An attacker could possibly use this issue to execute arbitrary code
or cause a crash.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Python vulnerability
vendor_ubuntu·2023-09-21
CVE-2022-48560 Python vulnerability
Title: Python vulnerability
Summary: Python could be made to execute arbitrary code if it received
a specially crafted script.
It was discovered that Python incorrectly handled certain scripts.
An attacker could possibly use this issue to execute arbitrary code
or cause a crash.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
python: use after free in heappushpop() of heapq module
vendor_redhat·2023-08-22·CVSS 7.5
CVE-2022-48560 [HIGH] CWE-416 python: use after free in heappushpop() of heapq module
python: use after free in heappushpop() of heapq module
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
A use-after-free vulnerability was found in Python via the heappushpop function in the heapq module. This flaw allows an attacker to submit a specially crafted request, causing a service disruption that leads to a denial of service attack.
Statement: Versions of python36:3.6/python36 as shipped with Red Hat Enterprise Linux 8 are marked as 'Not affected' as they just provide "symlinks" to the main python3 component, which provides the actual interpreter of the Python programming language.
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and
Debian
CVE-2022-48560: python2.7 - A use-after-free exists in Python through 3.9 via heappushpop in heapq.
vendor_debian·2022·CVSS 7.5
CVE-2022-48560 [HIGH] CVE-2022-48560: python2.7 - A use-after-free exists in Python through 3.9 via heappushpop in heapq.
A use-after-free exists in Python through 3.9 via heappushpop in heapq.
Scope: local
bullseye: resolved (fixed in 2.7.18-8+deb11u1)
No detection rules found.
No public exploits indexed.
https://bugs.python.org/issue39421https://lists.debian.org/debian-lts-announce/2023/09/msg00022.htmlhttps://lists.debian.org/debian-lts-announce/2023/10/msg00017.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZ5OOBWNYWXFTZDMCGHJVGDLDTHLWITJ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VO7Y2YZSDK3UYJD2KBGLXRTGNG6T326J/https://security.netapp.com/advisory/ntap-20230929-0008/https://bugs.python.org/issue39421https://lists.debian.org/debian-lts-announce/2023/09/msg00022.htmlhttps://lists.debian.org/debian-lts-announce/2023/10/msg00017.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZ5OOBWNYWXFTZDMCGHJVGDLDTHLWITJ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VO7Y2YZSDK3UYJD2KBGLXRTGNG6T326J/https://lists.fedoraproject.org/archives/list/[email protected]/message/JZ5OOBWNYWXFTZDMCGHJVGDLDTHLWITJ/https://lists.fedoraproject.org/archives/list/[email protected]/message/VO7Y2YZSDK3UYJD2KBGLXRTGNG6T326J/https://security.netapp.com/advisory/ntap-20230929-0008/
2023-08-22
Published