Skip to content

gettext: DoS via crafted Plural-Forms #62517

@jwilk

Description

@jwilk
mannequin
BPO 18317
Nosy @warsaw, @pitrou, @tiran, @benjaminp, @jwilk, @serhiy-storchaka
Superseder
  • bpo-28563: Arbitrary code execution in gettext.c2py
  • Files
  • testcase.mo
  • testcase.py
  • 18317_gettext.patch
  • 18317_gettext2.patch
  • Note: these values reflect the state of the issue at the time it was migrated and might not reflect the current state.

    Show more details

    GitHub fields:

    assignee = None
    closed_at = <Date 2016-11-08.19:32:58.506>
    created_at = <Date 2013-06-27.22:01:26.289>
    labels = ['type-security', '3.7', 'library']
    title = 'gettext: DoS via crafted Plural-Forms'
    updated_at = <Date 2016-11-08.19:32:58.504>
    user = 'https://github.com/jwilk'

    bugs.python.org fields:

    activity = <Date 2016-11-08.19:32:58.504>
    actor = 'serhiy.storchaka'
    assignee = 'none'
    closed = True
    closed_date = <Date 2016-11-08.19:32:58.506>
    closer = 'serhiy.storchaka'
    components = ['Library (Lib)']
    creation = <Date 2013-06-27.22:01:26.289>
    creator = 'jwilk'
    dependencies = []
    files = ['30715', '30716', '30721', '30725']
    hgrepos = []
    issue_num = 18317
    keywords = ['patch']
    message_count = 9.0
    messages = ['191963', '191968', '191969', '191972', '191980', '191981', '191983', '191995', '280338']
    nosy_count = 6.0
    nosy_names = ['barry', 'pitrou', 'christian.heimes', 'benjamin.peterson', 'jwilk', 'serhiy.storchaka']
    pr_nums = []
    priority = 'normal'
    resolution = 'fixed'
    stage = 'resolved'
    status = 'closed'
    superseder = '28563'
    type = 'security'
    url = 'https://bugs.python.org/issue18317'
    versions = ['Python 2.7', 'Python 3.4', 'Python 3.5', 'Python 3.6', 'Python 3.7']

    Metadata

    Metadata

    Assignees

    No one assigned

      Labels

      3.7 (EOL)end of lifestdlibStandard Library Python modules in the Lib/ directorytype-securityA security issue
      No fields configured for issues without a type.

      Projects

      No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions