CVE-2021-3737
A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from this vulnerability is to system availability.
Published:Aug 9, 2021
Last Modified:Dec 17, 2025
EPS:Mar 4, 2022
EPSS Score:0.00243
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Canonical
Product
Ubuntu Linux
Canonical
Ubuntu Linux
Vendor
Fedoraproject
Product
Fedora
Fedoraproject
Fedora
Vendor
Netapp
Product
Hci
Netapp
Hci
Vendor
Netapp
Product
Management Services For Element Software
Netapp
Management Services For Element Software
Vendor
Netapp
Product
Netapp Xcp Smb
Netapp
Netapp Xcp Smb
Vendor
Netapp
Product
Ontap Select Deploy Administration Utility
Netapp
Ontap Select Deploy Administration Utility
Vendor
Netapp
Product
Xcp Nfs
Netapp
Xcp Nfs
Vendor
Oracle
Product
Communications Cloud Native Core Binding Support Function
Oracle
Communications Cloud Native Core Binding Support Function
Vendor
Oracle
Product
Communications Cloud Native Core Network Exposure Function
Oracle
Communications Cloud Native Core Network Exposure Function
Vendor
Oracle
Product
Communications Cloud Native Core Policy
Oracle
Communications Cloud Native Core Policy
Vendor
Python
Product
Python
Python
Python
Vendor
Redhat
Product
Codeready Linux Builder
Redhat
Codeready Linux Builder
Vendor
Redhat
Product
Codeready Linux Builder For Ibm Z Systems
Redhat
Codeready Linux Builder For Ibm Z Systems
Vendor
Redhat
Product
Codeready Linux Builder For Power Little Endian
Redhat
Codeready Linux Builder For Power Little Endian
Vendor
Redhat
Product
Enterprise Linux
Redhat
Enterprise Linux
Vendor
Redhat
Product
Enterprise Linux For Ibm Z Systems
Redhat
Enterprise Linux For Ibm Z Systems
Vendor
Redhat
Product
Enterprise Linux For Power Little Endian
Redhat
Enterprise Linux For Power Little Endian
Vendor
Redhat
Product
Rhel Software Collections
Redhat
Rhel Software Collections
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
