UBUNTU-CVE-2022-48560
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-48560
UBUNTU-CVE-2022-48560
Summary:
Details: A use-after-free exists in Python through 3.9 via heappushpop in heapq.
References: https://ubuntu.com/security/CVE-2022-48560, https://github.com/python/cpython/issues/83602, https://github.com/python/cpython/commit/79f89e6e5a659846d1068e8b1bd8e491ccdef861, https://github.com/python/cpython/commit/958064f8d2b84062b0582bbae911df8ccfc11fd6, https://bugs.python.org/issue39421, https://ubuntu.com/security/notices/USN-6394-1, https://ubuntu.com/security/notices/USN-6394-2, https://www.cve.org/CVERecord?id=CVE-2022-48560, https://ubuntu.com/security/notices/USN-6891-1, https://ubuntu.com/security/notices/USN-7180-1
Affected packages
Package
Name: python2.7
Purl: pkg:deb/ubuntu/python2.7?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
