CVE-2012-2417
17.06.2012, 03:41
PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers to conduct brute force attacks to obtain the private key.Enginsight
Vendor | Product | Version |
---|---|---|
dlitz | pycrypto | 𝑥 ≤ 2.5 |
dlitz | pycrypto | 1.0.0 |
dlitz | pycrypto | 1.0.1 |
dlitz | pycrypto | 1.0.2 |
dlitz | pycrypto | 1.1:alpha2 |
dlitz | pycrypto | 1.9:alpha1 |
dlitz | pycrypto | 1.9:alpha2 |
dlitz | pycrypto | 1.9:alpha3 |
dlitz | pycrypto | 1.9:alpha4 |
dlitz | pycrypto | 1.9:alpha5 |
dlitz | pycrypto | 1.9:alpha6 |
dlitz | pycrypto | 2.0 |
dlitz | pycrypto | 2.0.1 |
dlitz | pycrypto | 2.1.0 |
dlitz | pycrypto | 2.1.0:alpha1 |
dlitz | pycrypto | 2.1.0:alpha2 |
dlitz | pycrypto | 2.1.0:beta1 |
dlitz | pycrypto | 2.2 |
dlitz | pycrypto | 2.3 |
dlitz | pycrypto | 2.4 |
dlitz | pycrypto | 2.4.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References