← Back to CVE List
CVE-2026-3298NVD
Vulnerability Summary
The method "sock_recvfrom_into()" of "asyncio.ProacterEventLoop" (Windows only) was missing a boundary check for the data buffer when using nbytes parameter. This allowed for an out-of-bounds buffer write if data was larger than the buffer size. Non-Windows platforms are not affected.
CVSS v4.0 Base Metrics — Score 8.8 (HIGH)
Attack VectorNetwork
Attack ComplexityLow
Attack RequirementsNone
Privileges RequiredNone
User InteractionNone
Confidentiality (Vulnerable System)Low
Integrity (Vulnerable System)Low
Availability (Vulnerable System)High
Confidentiality (Subsequent System)None
Integrity (Subsequent System)None
Availability (Subsequent System)None
Affected & Patched Versions
- Python Software Foundation CPython < 3.11.16
- Python Software Foundation CPython >= 3.12.0 and < 3.12.14
- Python Software Foundation CPython >= 3.13.0 and < 3.13.14
- Python Software Foundation CPython >= 3.14.0a1 and < 3.14.5rc1
- Python Software Foundation CPython >= 3.15.0a1 and < 3.15.0b1
- Python Software Foundation CPython 3.11.16
- Python Software Foundation CPython 3.12.14
- Python Software Foundation CPython 3.13.14
- Python Software Foundation CPython 3.14.5rc1
- Python Software Foundation CPython 3.15.0b1
External References
- https://github.com/python/cpython/pull/148809
- https://github.com/python/cpython/issues/148808
- https://mail.python.org/archives/list/security-announce@python.org/thread/KWTPIQBOOOUNQP7UFSLBI437NJDFLA3F/
- https://github.com/python/cpython/commit/1274766d3c29007ab77245a72abbf8dce2a9db4d
- https://github.com/python/cpython/commit/27522b7d6e6588f03e61099dd858cd5a9314e2f2
- https://github.com/python/cpython/commit/95633d2aad4721e25e4dfd9f43dfb6e1edcbd741
- https://github.com/python/cpython/commit/6c8b85b3f1d83d5697ec19880960e1eacee56688
- https://github.com/python/cpython/commit/f5ca38739241fe7a40a4b116d5a8a1364dd6fea7