← back
CVE-2008-4864

CVE-2008-4864

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 21%
from disclosure to weapon0 days
Published on NVDOct 31
1st PoCOct 27
exploitation probability
21%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Multiple integer overflows in imageop.c in the imageop module in Python 1.5.2 through 2.5.1 allow context-dependent attackers to break out of the Python VM and execute arbitrary code via large integer values in certain arguments to the crop function, leading to a buffer overflow, a different vulnerability than CVE-2007-4965 and CVE-2008-1679.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.