Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-27459

Опубликовано: 18 мар. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 9.8

Описание

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to set_cookie_generate_callback returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.

РелизСтатусПримечание
devel

not-affected

25.3.0-1ubuntu1
esm-infra-legacy/trusty

not-affected

esm-infra-legacy/xenial

not-affected

esm-infra/bionic

not-affected

esm-infra/focal

not-affected

esm-infra/xenial

not-affected

jammy

not-affected

21.0.0-1
noble

released

23.2.0-1ubuntu0.1
questing

released

25.0.0-1ubuntu0.1
upstream

released

26.0.0

Показывать по

EPSS

Процентиль: 49%
0.00704
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 8.1
redhat
5 месяцев назад

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.

CVSS3: 9.8
nvd
5 месяцев назад

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.

msrc
5 месяцев назад

pyOpenSSL DTLS cookie callback buffer overflow

CVSS3: 9.8
debian
5 месяцев назад

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...

CVSS3: 8.1
redos
6 дней назад

Уязвимость pyOpenSSL

EPSS

Процентиль: 49%
0.00704
Низкий

9.8 Critical

CVSS3