CVE-2013-7459
15.02.2017, 15:59
Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers to execute arbitrary code as demonstrated by a crafted iv parameter to cryptmsg.py.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dlitz | pycrypto | 𝑥 ≤ 2.6.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| python-paramiko |
| ||||||||||||||||
| python-pycrypto |
| ||||||||||||||||
| python2-pycrypto |
| ||||||||||||||||
| python3-pycrypto |
|
Common Weakness Enumeration
References