Kafkacrypto

Latest version: v0.9.11.0

Safety actively analyzes 682382 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 4 of 7

0.9.9.7

Not secure
This release fixes one high severity security flaw in the chain processing code: due to a mistake in the handling of "match everything" regexes, it was possible for sub-certificates to override parent constraints. This scenario is detectable by the signer prior to signing, but due to the potential for misuse if signer does not refuse to sign, this is considered high risk.

0.9.9.6

Not secure
This release includes a number of important bugfixes, including:
1. adding compatibility with msgpack 1.0.0.
2. as part of 1, added appropriate str/bin support in a backwards-compatible fashion that will, once all systems are running 0.9.9.6 or later, enable switching off of the compatibility components with full msgpack 1 support.
3. ensure appropriate logging levels are always set.
4. fix regex constraint comparisons to allow the special case of a "match everything" regex.

0.9.9.5

Not secure
This release includes a number of important bugfixes, including:
1. ensuring that key ids are computed from the node's ID public key, not name, to prevent name clashes.
2. improved file initialization so that non-found values in existing files are appropriately added.
3. improved error handling in the deserializer to avoid unnecessary exceptions.
4. fix double-encryption of already encrypted messages being reserialized.

0.9.9.4

Not secure
Improve file initialization, particularly of kafka required SSL CA store, when not present.

0.9.9.3

Not secure
Fix one critical bug in pathlength parsing code with path-limited roots of trust.

0.9.9.2

Not secure
Continued minor bugfixes. This version also includes automatic initialization of the relevant crypto files if not present. This simplifies use of the package, as well as simplifying the tools for provisioning.

Page 4 of 7

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.