Логотип exploitDog
bind:CVE-2026-27459
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-27459

Количество 6

Количество 6

ubuntu логотип

CVE-2026-27459

9 дней назад

(pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...)

EPSS: Низкий
redhat логотип

CVE-2026-27459

9 дней назад

A flaw was found in pyOpenSSL. The set_cookie_generate_callback callback function can be used to generate DTLS cookies. When the callback returns a cookie string or byte sequence longer than 256 bytes, a buffer overflow can be triggered due to a missing bounds checking before copying the data to a fixed-size buffer provided by the underlying OpenSSL library.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-27459

9 дней назад

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.

EPSS: Низкий
msrc логотип

CVE-2026-27459

8 дней назад

pyOpenSSL DTLS cookie callback buffer overflow

EPSS: Низкий
debian логотип

CVE-2026-27459

9 дней назад

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...

EPSS: Низкий
github логотип

GHSA-5pwr-322w-8jr4

10 дней назад

pyOpenSSL DTLS cookie callback buffer overflow

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-27459

(pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...)

0%
Низкий
9 дней назад
redhat логотип
CVE-2026-27459

A flaw was found in pyOpenSSL. The set_cookie_generate_callback callback function can be used to generate DTLS cookies. When the callback returns a cookie string or byte sequence longer than 256 bytes, a buffer overflow can be triggered due to a missing bounds checking before copying the data to a fixed-size buffer provided by the underlying OpenSSL library.

CVSS3: 8.1
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-27459

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.

0%
Низкий
9 дней назад
msrc логотип
CVE-2026-27459

pyOpenSSL DTLS cookie callback buffer overflow

0%
Низкий
8 дней назад
debian логотип
CVE-2026-27459

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...

0%
Низкий
9 дней назад
github логотип
GHSA-5pwr-322w-8jr4

pyOpenSSL DTLS cookie callback buffer overflow

0%
Низкий
10 дней назад

Уязвимостей на страницу