CVE-2007-2052
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect buffer size to be used for the strxfrm function, which allows context-dependent attackers to read portions of memory via unknown manipulations that trigger a buffer over-read due to missing null termination.
Date published : 2007-04-16
http://www.securityfocus.com/bid/23887
http://www.securityfocus.com/archive/1/469294/30/6450/threaded