Advisories ยป MGASA-2021-0456

Updated python-rsa packages fix security vulnerability

Publication date: 02 Oct 2021
Modification date: 02 Oct 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2020-25658

Description

It was found that python-rsa is vulnerable to Bleichenbacher timing
attacks. An attacker can use this flaw via the RSA decryption API to
decrypt parts of the cipher text encrypted with RSA. (CVE-2020-25658)
                

References

SRPMS

8/core