dlitz records
4 published records for vendor dlitz.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-310 Cryptographic Issues2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-326 Inadequate Encryption Strength1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2013-7459No exploit | Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers dlitz · pycrypto · CWE-119 | Critical9.8 | — | 9.6% | Feb 15, 2017 |
31Monitor | CVE-2018-6594No exploit | lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive dlitz · pycrypto · CWE-326 | High7.5 | — | 2.0% | Feb 3, 2018 |
18Monitor | CVE-2012-2417No exploit | PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature sdlitz · pycrypto · CWE-310 | Medium4.3 | — | 2.4% | Jun 16, 2012 |
18Monitor | CVE-2013-1445No exploit | The Crypto.Random.atfork function in PyCrypto before 2.6.1 does not properly reseed the pseudo-random number generator (PRNG) before allowindlitz · pycrypto · CWE-310 | Medium4.3 | — | 1.7% | Oct 26, 2013 |
- CVE-2013-745942Plan
Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers
CriticalCVSS 9.8No exploitEPSS 10%dlitz · pycryptoFeb 15, 2017
- CVE-2018-659431Monitor
lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive
HighCVSS 7.5No exploitEPSS 2%dlitz · pycryptoFeb 3, 2018
- CVE-2012-241718Monitor
PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature s
MediumCVSS 4.3No exploitEPSS 2%dlitz · pycryptoJun 16, 2012
- CVE-2013-144518Monitor
The Crypto.Random.atfork function in PyCrypto before 2.6.1 does not properly reseed the pseudo-random number generator (PRNG) before allowin
MediumCVSS 4.3No exploitEPSS 2%dlitz · pycryptoOct 26, 2013