Dlitz Pycrypto 2.6.1

CPE Details

Dlitz Pycrypto 2.6.1
2.6.1
2019-06-17
12h21 +00:00
2019-06-17
12h21 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:dlitz:pycrypto:2.6.1:*:*:*:*:*:*:*

Informations

Vendor

dlitz

Product

pycrypto

Version

2.6.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-6594 2018-02-03 02h00 +00:00 lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive information by reading ciphertext data (i.e., it does not have semantic security in face of a ciphertext-only attack). The Decisional Diffie-Hellman (DDH) assumption does not hold for PyCrypto's ElGamal implementation.
7.5
High
CVE-2013-7459 2017-02-15 14h00 +00:00 Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers to execute arbitrary code as demonstrated by a crafted iv parameter to cryptmsg.py.
9.8
Critical