ALT-PU-2025-1659-2
Package python3-module-rsa updated to version 4.9-alt2 for branch c10f1 in task 370706.
Closed vulnerabilities
Published: 2020-11-12
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-25658
It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption API to decrypt parts of the cipher text encrypted with RSA.
Severity: MEDIUM (5.9)
Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
References:
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-25658
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-25658
- https://github.com/sybrenstuvel/python-rsa/issues/165
- https://github.com/sybrenstuvel/python-rsa/issues/165
- FEDORA-2021-783a157adc
- FEDORA-2021-783a157adc
- FEDORA-2021-15e50503d6
- FEDORA-2021-15e50503d6
- FEDORA-2021-c1fef03e71
- FEDORA-2021-c1fef03e71