Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-32883

Опубликовано: 30 мар. 2026
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

Botan is a C++ cryptography library. From version 3.0.0 to before version 3.11.0, during X509 path validation, OCSP responses were checked for an appropriate status code, but critically omitted verifying the signature of the OCSP response itself. This issue has been patched in version 3.11.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:botan_project:botan:*:*:*:*:*:*:*:*
Версия от 3.0.0 (включая) до 3.11.0 (исключая)

EPSS

Процентиль: 5%
0.00154
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-347

Связанные уязвимости

CVSS3: 5.9
ubuntu
4 месяца назад

Botan is a C++ cryptography library. From version 3.0.0 to before version 3.11.0, during X509 path validation, OCSP responses were checked for an appropriate status code, but critically omitted verifying the signature of the OCSP response itself. This issue has been patched in version 3.11.0.

CVSS3: 6.8
redhat
4 месяца назад

Botan is a C++ cryptography library. From version 3.0.0 to before version 3.11.0, during X509 path validation, OCSP responses were checked for an appropriate status code, but critically omitted verifying the signature of the OCSP response itself. This issue has been patched in version 3.11.0.

CVSS3: 5.9
debian
4 месяца назад

Botan is a C++ cryptography library. From version 3.0.0 to before vers ...

EPSS

Процентиль: 5%
0.00154
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-347