Количество 6
Количество 6
CVE-2026-27459
(pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...)
CVE-2026-27459
A flaw was found in pyOpenSSL. The set_cookie_generate_callback callback function can be used to generate DTLS cookies. When the callback returns a cookie string or byte sequence longer than 256 bytes, a buffer overflow can be triggered due to a missing bounds checking before copying the data to a fixed-size buffer provided by the underlying OpenSSL library.
CVE-2026-27459
pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected.
CVE-2026-27459
pyOpenSSL DTLS cookie callback buffer overflow
CVE-2026-27459
pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...
GHSA-5pwr-322w-8jr4
pyOpenSSL DTLS cookie callback buffer overflow
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-27459 (pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ...) | 0% Низкий | 9 дней назад | ||
CVE-2026-27459 A flaw was found in pyOpenSSL. The set_cookie_generate_callback callback function can be used to generate DTLS cookies. When the callback returns a cookie string or byte sequence longer than 256 bytes, a buffer overflow can be triggered due to a missing bounds checking before copying the data to a fixed-size buffer provided by the underlying OpenSSL library. | CVSS3: 8.1 | 0% Низкий | 9 дней назад | |
CVE-2026-27459 pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values that are too long are now rejected. | 0% Низкий | 9 дней назад | ||
CVE-2026-27459 pyOpenSSL DTLS cookie callback buffer overflow | 0% Низкий | 8 дней назад | ||
CVE-2026-27459 pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in ... | 0% Низкий | 9 дней назад | ||
GHSA-5pwr-322w-8jr4 pyOpenSSL DTLS cookie callback buffer overflow | 0% Низкий | 10 дней назад |
Уязвимостей на страницу