Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1895

Опубликовано: 28 янв. 2020
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 7.5

Описание

The py-bcrypt module before 0.3 for Python does not properly handle concurrent memory access, which allows attackers to bypass authentication via multiple authentication requests, which trigger the password hash to be overwritten.

РелизСтатусПримечание
devel

not-affected

0.4-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [0.4-1]]
hardy

DNE

lucid

not-affected

0.1-1build1
oneiric

ignored

end of life
precise

not-affected

0.1-1build2
quantal

ignored

end of life
raring

ignored

end of life
saucy

ignored

end of life
trusty

not-affected

0.4-1

Показывать по

Ссылки на источники

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
около 6 лет назад

The py-bcrypt module before 0.3 for Python does not properly handle concurrent memory access, which allows attackers to bypass authentication via multiple authentication requests, which trigger the password hash to be overwritten.

CVSS3: 7.5
debian
около 6 лет назад

The py-bcrypt module before 0.3 for Python does not properly handle co ...

CVSS3: 7.5
github
больше 4 лет назад

Improper Restriction of Excessive Authentication Attempts in py-bcrypt

5 Medium

CVSS2

7.5 High

CVSS3