Skip to main content

Vendor/product archive

dlitz / pycrypto CVEs

Beta · best-effort

4 CVEs tagged to dlitz / pycrypto1 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2013-7459

Published Feb 15, 2017

Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers to execute arbitrary code as demonstrat…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-1445

Published Oct 26, 2013

The Crypto.Random.atfork function in PyCrypto before 2.6.1 does not properly reseed the pseudo-random number generator (PRNG) before allowing a child process to access it, which m…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2417

Published Jun 17, 2012

PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it e…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1