Release | Version |
---|---|
jessie | 0.6.1-1+deb8u1 |
stretch | 1.7.1-3+deb9u2 |
buster | 2.6.1-3+deb10u5 |
buster (security) | 2.6.1-3+deb10u4 |
bullseye | 3.3.2-1 |
bullseye (security) | 3.3.2-1+deb11u1 |
bookworm | 38.0.4-3+deb12u1 |
bookworm (security) | 38.0.4-3~deb12u1 |
trixie | 43.0.0-1 |
sid | 43.0.0-1 |
Bug | jessie | stretch | buster | bullseye | bookworm | trixie | sid | Description |
---|---|---|---|---|---|---|---|---|
CVE-2023-50782 | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable (no DSA, ignored) | vulnerable (no DSA, ignored) | fixed | fixed | A flaw was found in the python-cryptography package. This issue may al ... |
CVE-2020-25659 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | fixed | fixed | fixed | python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks ... |
Bug | Description |
---|---|
CVE-2024-26130 | cryptography is a package designed to expose cryptographic primitives ... |
CVE-2023-49083 | cryptography is a package designed to expose cryptographic primitives ... |
CVE-2023-38325 | The cryptography package before 41.0.2 for Python mishandles SSH certi ... |
CVE-2023-23931 | cryptography is a package designed to expose cryptographic primitives ... |
CVE-2020-36242 | In the cryptography package before 3.3.2 for Python, certain sequences ... |
CVE-2018-10903 | A flaw was found in python-cryptography versions between >=1.9.0 and < ... |
CVE-2016-9243 | HKDF in cryptography before 1.5.2 returns an empty byte-string if used ... |
DSA / DLA | Description |
---|---|
ELA-1215-1 | python-cryptography - security update |
DLA-3922-1 | python-cryptography - security update |
DLA-3331-2 | python-cryptography - regression update |
DLA-3331-1 | python-cryptography - security update |