Опубликовано: 11 янв. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.9
Описание
python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5 ciphertext.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 2.1.4-1ubuntu1.4 |
devel | released | 3.2.1-1 |
esm-infra-legacy/trusty | DNE | |
esm-infra/bionic | not-affected | 2.1.4-1ubuntu1.4 |
esm-infra/focal | not-affected | 2.8-3ubuntu0.1 |
esm-infra/xenial | not-affected | 1.2.3-1ubuntu0.3 |
focal | released | 2.8-3ubuntu0.1 |
groovy | released | 3.0-1ubuntu0.1 |
precise/esm | DNE | |
trusty | ignored | end of standard support |
Показывать по
10
EPSS
Процентиль: 56%
0.00343
Низкий
4.3 Medium
CVSS2
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
redhat
больше 4 лет назад
python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5 ciphertext.
CVSS3: 5.9
nvd
больше 4 лет назад
python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5 ciphertext.
CVSS3: 5.9
debian
больше 4 лет назад
python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks ...
EPSS
Процентиль: 56%
0.00343
Низкий
4.3 Medium
CVSS2
5.9 Medium
CVSS3