CVE-2023-38325

Published

Severity

CVSS v3:
7.5 HIGH
CVSS v2:
N/A

Description

The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:cryptography_project:cryptography:*:*:*:*:*:python:*:*n/a41.0.2*
cpe:2.3:a:cryptography_project:cryptography:*:*:*:*:*:python:*:*40.0.0 (including)41.0.2*

External Links