Skip to content
Noroxi

pycryptodome records

2 published records for vendor pycryptodome.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18
  2. 24

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

2 records
  • PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functi

    HighCVSS 7.5No exploitEPSS 2%

    pycryptodome · pycryptodomeAug 19, 2018

  • PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger attack.

    MediumCVSS 5.9No exploitEPSS 1%

    pycryptodome · pycryptodomeJan 5, 2024