CVE-2008-2316
Not scored
Multiple integer overflows (Apple)
Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attackers to defeat cryptographic digests, related to "partial hashlib hashing of data exceeding 4GB."
Exploit probability
4.1%
Published
August 1, 2008
Required by
Not available
Last source change
October 9, 2025
02 / AFFECTED SOFTWARE
Affected packages
62 explicit affected versions
04 / EVIDENCE
Source records
Open Source Vulnerabilities
PSF-2008-5
View original source
Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attackers to defeat cryptographic digests, related to "partial hashlib hashing of data exceeding 4GB."
05 / REFERENCES