FlawAtlas
Search the atlas
CVE-2008-2316 Not scored

Multiple integer overflows (Apple)

Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attackers to defeat cryptographic digests, related to "partial hashlib hashing of data exceeding 4GB."

Exploit probability 4.1%
Published August 1, 2008
Required by Not available
Last source change October 9, 2025

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

62 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities PSF-2008-5

Integer overflow in _hashopenssl.c in the hashlib module in Python 2.5.2 and earlier might allow context-dependent attackers to defeat cryptographic digests, related to "partial hashlib hashing of data exceeding 4GB."

View original source

05 / REFERENCES

Further evidence