Количество 20
Количество 20

BDU:2024-02534
Уязвимость функций load_pem_pkcs7_certificates() и load_der_pkcs7_certificates() пакет cryptography, позволяющая нарушителю вызвать отказ в обслуживании

ROS-20240409-06
Множественные уязвимости salt

CVE-2023-49083
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6.

CVE-2023-49083
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6.

CVE-2023-49083
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6.

CVE-2023-49083
CVE-2023-49083
cryptography is a package designed to expose cryptographic primitives ...

SUSE-SU-2023:4844-1
Security update for python-cryptography

SUSE-SU-2023:4843-1
Security update for python3-cryptography

SUSE-SU-2023:4842-1
Security update for python-cryptography

ROS-20240402-16
Уязвимость python3-cryptography

RLSA-2024:3105
Moderate: python3.11-cryptography security update

RLSA-2024:2337
Moderate: python3.11-cryptography security update
GHSA-jfhm-5ghh-2f97
cryptography vulnerable to NULL-dereference when loading PKCS7 certificates
ELSA-2024-3105
ELSA-2024-3105: python3.11-cryptography security update (MODERATE)
ELSA-2024-2337
ELSA-2024-2337: python3.11-cryptography security update (MODERATE)
ELSA-2024-19480
ELSA-2024-19480: python-cryptography security update (MODERATE)
ELSA-2024-12234
ELSA-2024-12234: python-cryptography security update (MODERATE)
ELSA-2024-12079
ELSA-2024-12079: python-cryptography security update (IMPORTANT)
ELSA-2024-12078
ELSA-2024-12078: python3.11-cryptography security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2024-02534 Уязвимость функций load_pem_pkcs7_certificates() и load_der_pkcs7_certificates() пакет cryptography, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | ROS-20240409-06 Множественные уязвимости salt | CVSS3: 7.8 | около 1 года назад | |
![]() | CVE-2023-49083 cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6. | CVSS3: 5.9 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-49083 cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-49083 cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6. | CVSS3: 5.9 | 0% Низкий | больше 1 года назад |
![]() | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
CVE-2023-49083 cryptography is a package designed to expose cryptographic primitives ... | CVSS3: 5.9 | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4844-1 Security update for python-cryptography | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4843-1 Security update for python3-cryptography | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4842-1 Security update for python-cryptography | 0% Низкий | больше 1 года назад | |
![]() | ROS-20240402-16 Уязвимость python3-cryptography | CVSS3: 7.5 | 0% Низкий | около 1 года назад |
![]() | RLSA-2024:3105 Moderate: python3.11-cryptography security update | 0% Низкий | около 1 месяца назад | |
![]() | RLSA-2024:2337 Moderate: python3.11-cryptography security update | 0% Низкий | около 1 года назад | |
GHSA-jfhm-5ghh-2f97 cryptography vulnerable to NULL-dereference when loading PKCS7 certificates | CVSS3: 5.9 | 0% Низкий | больше 1 года назад | |
ELSA-2024-3105 ELSA-2024-3105: python3.11-cryptography security update (MODERATE) | около 1 года назад | |||
ELSA-2024-2337 ELSA-2024-2337: python3.11-cryptography security update (MODERATE) | около 1 года назад | |||
ELSA-2024-19480 ELSA-2024-19480: python-cryptography security update (MODERATE) | около 1 года назад | |||
ELSA-2024-12234 ELSA-2024-12234: python-cryptography security update (MODERATE) | около 1 года назад | |||
ELSA-2024-12079 ELSA-2024-12079: python-cryptography security update (IMPORTANT) | больше 1 года назад | |||
ELSA-2024-12078 ELSA-2024-12078: python3.11-cryptography security update (IMPORTANT) | больше 1 года назад |
Уязвимостей на страницу