CVE-2007-5712
Last modified
CVE-2007-5712 is a vulnerability of currently unknown severity. The internationalization (i18n) framework in Django 0.91, 0.95, 0.95.1, and 0.96, and as used in other products such as PyLucid, when the USE_I18N option and the i18n component are enabled, allows remote attackers to cause a denial of service (memory consumption) via many HTTP requests with large Accept-Language headers.. EPSS estimates a 1.80% chance of exploitation in the next 30 days.
Description
The internationalization (i18n) framework in Django 0.91, 0.95, 0.95.1, and 0.96, and as used in other products such as PyLucid, when the USE_I18N option and the i18n component are enabled, allows remote attackers to cause a denial of service (memory consumption) via many HTTP requests with large Accept-Language headers.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Django Project | Django | 0.91 |
| Django Project | Django | 0.95 |
| Django Project | Django | 0.95.1 |
| Django Project | Django | 0.96 |
References
- http://secunia.com/advisories/27435Patch, Vendor Advisory
- http://secunia.com/advisories/27597Vendor Advisory
- http://secunia.com/advisories/31961Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3660Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3661Vendor Advisory
- http://secunia.com/advisories/27435Patch, Vendor Advisory
- http://secunia.com/advisories/27597Vendor Advisory
- http://secunia.com/advisories/31961Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3660Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3661Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-5712?
How severe is CVE-2007-5712?
How do I fix CVE-2007-5712?
Are you affected by CVE-2007-5712?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
