Buffer overflow in the PyCrypto ARC2 module 2.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large ARC2 key length.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Gentoo Linux | — | Upgrade dev-python/pycrypto. | Oct 30, 2017 | Feb 12, 2009 |
| Suse | — | Upgrade python-crypto | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade python2.4-cryptoUpgrade python-crypto | Nov 8, 2024 | Feb 12, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub