RSS   Vulnerabilities for 'RSA'   RSS

2016-01-13
 
CVE-2016-1494

CWE-20
 

 
The verify function in the RSA package for Python (Python-RSA) before 3.3 allows attackers to spoof signatures with a small public exponent via crafted signature padding, aka a BERserk attack.

 

 >>> Vendor: Python 22 Products
Python
Virtualenv
Beaker
Keyring
Setuptools
RPLY
Pyxdg
Pillow
Requests
PIP
Tgcaptcha2
Urllib3
Python priority library
Hpack
Hyper
Openpyxl
Tablib
Simplejson
Pykerberos
Pypiserver
Python-gnupg
RSA


Copyright 2019, cxsecurity.com

 

Back to Top