Safety vulnerability ID: 39105
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Rsa 4.7 includes a fix for CVE-2020-25658: It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption API to decrypt parts of the cipher text encrypted with RSA.
Latest version: 4.9
Pure-Python RSA implementation
It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption API to decrypt parts of the cipher text encrypted with RSA. See CVE-2020-25658.
CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-25658: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-25658
MISC:https://github.com/sybrenstuvel/python-rsa/issues/165: https://github.com/sybrenstuvel/python-rsa/issues/165
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application