CVE-2025-1795
published 2025-02-28CVE-2025-1795: During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also…
PriorityP410low2.3CVSS 4.0
AVNACHATPPRLUINVCLVINVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.60%
45.1th percentile
During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pypy3 | < pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) | pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) |
| debian | python3.11 | < pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) | pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) |
| debian | python3.13 | < pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) | pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) |
| debian | python3.9 | < pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) | pypy3 7.3.5+dfsg-2+deb11u5 (bullseye) |
| msrc | azl3_tensorflow_2.16.1-9_on_azure_linux_3.0 | — | — |
| msrc | cbl2_python3_3.9.19-12_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_python3_3.9.19-13_on_cbl_mariner_2.0 | — | — |
| python_software_foundation | cpython | < 3.10.17 | 3.10.17 |
| python_software_foundation | cpython | >= 3.11.0 < 3.11.9 | 3.11.9 |
| python_software_foundation | cpython | >= 3.12.0 < 3.12.3 | 3.12.3 |
| python_software_foundation | cpython | >= 3.13.0a1 < 3.13.0a5 | 3.13.0a5 |
CVSS provenance
nvdv4.02.3LOWCVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv2.3LOW
vendor_redhat5.5MEDIUM
vendor_debian2.3LOW
vendor_msrc2.3LOW
vendor_ubuntu2.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Python vulnerabilities
vendor_ubuntu·2025-06-16·CVSS 2.3
CVE-2025-1795 [LOW] Python vulnerabilities
Title: Python vulnerabilities
Summary: Python could be made to crash or expose sensitive information.
It was discovered that Python incorrectly handled certain unicode
characters during decoding. An attacker could possibly use this issue to
cause a denial of service. (CVE-2025-4516)
It was discovered that Python incorrectly handled unicode encoding of email
headers with list separators in folded lines. An attacker could possibly
use this issue to expose sensitive information. (CVE-2025-1795)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
python: Mishandling of comma during folding and unicode-encoding of email headers
vendor_redhat·2025-02-28·CVSS 2.3
CVE-2025-1795 [LOW] CWE-168 python: Mishandling of comma during folding and unicode-encoding of email headers
python: Mishandling of comma during folding and unicode-encoding of email headers
During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
A flaw was found in Python. When a separating comma ends up on a folded line during an address list folding of email headers, the comma is unintentionally unicode encoded. The expected behavior is that the separating comma remains unencoded. This can result in the address header being misinterpreted by some mail servers.
Package: python3.12 (Red Hat Enterprise Linux 10) - Fix deferred
Packag
Microsoft
Mishandling of comma during folding and unicode-encoding of email headers
vendor_msrc·2025-02-11·CVSS 2.3
CVE-2025-1795 [LOW] Mishandling of comma during folding and unicode-encoding of email headers
Mishandling of comma during folding and unicode-encoding of email headers
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
PSF: PSF
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference:
Debian
CVE-2025-1795: pypy3 - During an address list folding when a separating comma ends up on a folded line ...
vendor_debian·2025·CVSS 2.3
CVE-2025-1795 [LOW] CVE-2025-1795: pypy3 - During an address list folding when a separating comma ends up on a folded line ...
During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
Scope: local
bookworm: open
bullseye: resolved (fixed in 7.3.5+dfsg-2+deb11u5)
forky: resolved (fixed in 7.3.18+dfsg-1)
sid: resolved (fixed in 7.3.18+dfsg-1)
trixie: resolved (fixed in 7.3.18+dfsg-1)
OSV
python3.13, python3.12, python3.11, python3.10, python3.9, python3.8, python3.7, python3.6 vulnerabilities
osv·2025-06-16·CVSS 2.3
CVE-2025-4516 [LOW] python3.13, python3.12, python3.11, python3.10, python3.9, python3.8, python3.7, python3.6 vulnerabilities
python3.13, python3.12, python3.11, python3.10, python3.9, python3.8, python3.7, python3.6 vulnerabilities
It was discovered that Python incorrectly handled certain unicode
characters during decoding. An attacker could possibly use this issue to
cause a denial of service. (CVE-2025-4516)
It was discovered that Python incorrectly handled unicode encoding of email
headers with list separators in folded lines. An attacker could possibly
use this issue to expose sensitive information. (CVE-2025-1795)
OSV
CVE-2025-1795: During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is al
osv·2025-02-28·CVSS 2.3
CVE-2025-1795 [LOW] CVE-2025-1795: During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is al
During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
GHSA
GHSA-c266-vjjr-2v8j: During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is al
ghsa_unreviewed·2025-02-28
CVE-2025-1795 [LOW] CWE-116 GHSA-c266-vjjr-2v8j: During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is al
During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/python/cpython/commit/09fab93c3d857496c0bd162797fab816c311ee48https://github.com/python/cpython/commit/70754d21c288535e86070ca7a6e90dcb670b8593https://github.com/python/cpython/commit/9148b77e0af91cdacaa7fe3dfac09635c3fe9a74https://github.com/python/cpython/commit/a4ef689ce670684ec132204b1cd03720c8e0a03dhttps://github.com/python/cpython/commit/d4df3c55e4c5513947f907f24766b34d2ae8c090https://github.com/python/cpython/issues/100884https://github.com/python/cpython/pull/100885https://github.com/python/cpython/pull/119099https://mail.python.org/archives/list/[email protected]/thread/MB62IZMEC3UM6SGHP5LET5JX2Y7H4ZUR/https://lists.debian.org/debian-lts-announce/2025/03/msg00013.html
2025-02-28
Published