Safety vulnerability ID: 65212
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Versions of Cryptograph starting from 35.0.0 are susceptible to a security flaw in the POLY1305 MAC algorithm on PowerPC CPUs, which allows an attacker to disrupt the application's state. This disruption might result in false calculations or cause a denial of service. The vulnerability's exploitation hinges on the attacker's ability to alter the algorithm's application and the dependency of the software on non-volatile XMM registers.
https://github.com/pyca/cryptography/commit/89d0d56fb104ac4e0e6db63d78fc22b8c53d27e9
Latest version: 43.0.3
cryptography is a package which provides cryptographic recipes and primitives to Python developers.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application