ubuntu · CVE-2024-6923

Quick triage

Priority: medium Published: 2024-08-01 00:00:00 UTC Updated: 2025-06-24 15:31:37 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2024-6923 medium priority: Ubuntu including 11 source packages (python2.7, python3.10, …), 110 status rows across 10 suites (bionic, focal, jammy, noble, oracular, plucky, questing, trusty, upstream, xenial): DNE 79, needs-triage 10, released 10, ignored 7, not-affected 4.

Description:

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

cvelogic Threat Intelligence