Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

ubuntu логотип

CVE-2026-34073

4 месяца назад

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-34073

4 месяца назад

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2026-34073

4 месяца назад

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-34073

4 месяца назад

cryptography has incomplete DNS name constraint enforcement on peer names

EPSS: Низкий
debian логотип

CVE-2026-34073

4 месяца назад

cryptography is a package designed to expose cryptographic primitives ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-m959-cc7f-wv43

4 месяца назад

cryptography has incomplete DNS name constraint enforcement on peer names

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20506-1

4 месяца назад

Security update for python-cryptography

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-34073

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 5.3
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-34073

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 3.7
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-34073

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to version 46.0.6, DNS name constraints were only validated against SANs within child certificates, and not the "peer name" presented during each validation. Consequently, cryptography would allow a peer named bar.example.com to validate against a wildcard leaf certificate for *.example.com, even if the leaf's parent certificate (or upwards) contained an excluded subtree constraint for bar.example.com. This issue has been patched in version 46.0.6.

CVSS3: 5.3
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-34073

cryptography has incomplete DNS name constraint enforcement on peer names

0%
Низкий
4 месяца назад
debian логотип
CVE-2026-34073

cryptography is a package designed to expose cryptographic primitives ...

CVSS3: 5.3
0%
Низкий
4 месяца назад
github логотип
GHSA-m959-cc7f-wv43

cryptography has incomplete DNS name constraint enforcement on peer names

CVSS3: 5.3
0%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20506-1

Security update for python-cryptography

4 месяца назад

Уязвимостей на страницу