CVE-2025-1795

During an address list folding when a separating comma ends up on a folded line and that line is to be unicode-encoded then the separator itself is also unicode-encoded. Expected behavior is that the separating comma remains a plan comma. This can result in the address header being misinterpreted by some mail servers.
CVSS

No CVSS.

Configurations

No configuration.

History

28 Feb 2025, 21:15

Type Values Removed Values Added
CWE CWE-116

28 Feb 2025, 20:15

Type Values Removed Values Added
References
  • () https://github.com/python/cpython/commit/09fab93c3d857496c0bd162797fab816c311ee48 -
  • () https://github.com/python/cpython/commit/70754d21c288535e86070ca7a6e90dcb670b8593 -
  • () https://github.com/python/cpython/commit/9148b77e0af91cdacaa7fe3dfac09635c3fe9a74 -
  • () https://mail.python.org/archives/list/security-announce@python.org/thread/MB62IZMEC3UM6SGHP5LET5JX2Y7H4ZUR/ -

28 Feb 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-28 19:15

Updated : 2025-02-28 21:15


NVD link : CVE-2025-1795

Mitre link : CVE-2025-1795

CVE.ORG link : CVE-2025-1795


JSON object : View

Products Affected

No product.

CWE
CWE-116

Improper Encoding or Escaping of Output