Safety vulnerability ID: 62556
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Affected versions of Cryptography are vulnerable to NULL-dereference when loading PKCS7 certificates. Calling 'load_pem_pkcs7_certificates' or 'load_der_pkcs7_certificates' could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability.
Latest version: 43.0.3
cryptography is a package which provides cryptographic recipes and primitives to Python developers.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application