Release date:
Updated on:
Affected Systems:
Python tweepy Module 1.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56410
Cve id: CVE-2012-5825
Python is an object-oriented, literal translation computer programming language.
Python tweepy library 1.11 and other versions have the Security Restriction Bypass Vulnerability. After successful exploitation, attackers can perform man-in-the-middle attacks or simulate trusted servers.
<* Source: acm ccs 2012 conference
Link: http://secunia.com/advisories/51223/
Http://www.cs.utexas.edu /~ Shmat/shmat_ccs12.pdf
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Python
------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Www.python.org