Legrandin/pycryptodome
Releases134
Frequency1 month 1 day
Last Release
Stars3.24K
A self-contained cryptographic library for Python
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| < 3.19.1 | 5.9 MEDIUM | — | ||
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger attack. | ||||
| = *, < 3.6.6 | 7.5 HIGH | 5 MEDIUM | ||
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, leading to the mishandling of messages shorter than 16 bytes. | ||||