Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2023-6615
History
Nov 11, 2023 - 12:00 a.m.
Vulners
/
Oraclelinux
/
python-cryptography security update
python-cryptography security update
2023-11-11
00:00:00
linux.oracle.com
12
python-cryptography
security update
ftbfs
cve-2023-23931
openssl
rhbz#2203840
update_into
immutable objects
test_load_invalid_ec_key_from_pem
test_decrypt_invalid_decrypt
AI Score
6.5
Confidence
High
EPSS
0.001
Percentile
33.2%
JSON
[36.0.1-4]
Fix FTBFS caused by rsa_pkcs1_implicit_rejection OpenSSL feature, resolves rhbz#2203840
[36.0.1-3]
Fix CVE-2023-23931: Don’t allow update_into to mutate immutable objects, resolves rhbz#2172399
Fix FTBFS due to failing test_load_invalid_ec_key_from_pem and test_decrypt_invalid_decrypt
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
9
src
python-cryptography
< 36.0.1-4.el9
python-cryptography-36.0.1-4.el9.src.rpm
oracle linux
9
src
python-cryptography
< 36.0.1-4.el9
python-cryptography-36.0.1-4.el9.src.rpm
oracle linux
9
aarch64
python3-cryptography
< 36.0.1-4.el9
python3-cryptography-36.0.1-4.el9.aarch64.rpm
oracle linux
9
aarch64
python3-cryptography
< 36.0.1-4.el9
python3-cryptography-36.0.1-4.el9.aarch64.rpm
oracle linux
9
src
python-cryptography
< 36.0.1-4.el9
python-cryptography-36.0.1-4.el9.src.rpm
oracle linux
9
src
python-cryptography
< 36.0.1-4.el9
python-cryptography-36.0.1-4.el9.src.rpm
oracle linux
9
x86_64
python3-cryptography
< 36.0.1-4.el9
python3-cryptography-36.0.1-4.el9.x86_64.rpm
oracle linux
9
x86_64
python3-cryptography
< 36.0.1-4.el9
python3-cryptography-36.0.1-4.el9.x86_64.rpm
Related
debiancve 1
fedora 3
osv 10
debian 2
nessus 51
openvas 23
veracode 1
cbl_mariner 3
mageia 1
freebsd 1
ibm 19
github 1
alpinelinux 1
redhat 7
almalinux 3
oraclelinux 2
redhatcve 1
cve 1
ubuntucve 1
cvelist 1
nvd 1
prion 1
photon 3
ubuntu 1
cloudfoundry 1
redos 1
gentoo 1
rocky 1
hp 2
ics 1
oracle 4
debiancve
debiancve
CVE-2023-23931
2023-02-07 21:15:09
fedora
fedora
[SECURITY] Fedora 36 Update: python-cryptography-36.0.0-4.fc36
2023-03-10 01:38:26
[SECURITY] Fedora 38 Update: python-cryptography-37.0.2-8.fc38
2023-03-11 03:35:22
[SECURITY] Fedora 37 Update: python-cryptography-37.0.2-5.fc37
2023-02-27 01:49:10
osv
osv
10
CVE-2023-23931
2023-02-07 21:15:09
python310-cryptography-39.0.1-1.1 on GA media
2024-06-15 00:00:00
Cipher.update_into can corrupt memory if passed an immutable python object as the outbuf
2023-02-07 20:54:10
debian
debian
[SECURITY] [DLA 3331-1] python-cryptography security update
2023-02-22 20:00:30
[SECURITY] [DLA 3331-2] python-cryptography security update
2023-02-27 07:39:06
nessus
nessus
51
CentOS 9 : python-cryptography-36.0.1-3.el9
2024-02-29 00:00:00
EulerOS Virtualization 2.11.1 : python-cryptography (EulerOS-SA-2023-2740)
2024-01-16 00:00:00
EulerOS Virtualization 3.0.6.0 : python-cryptography (EulerOS-SA-2024-1700)
2024-05-17 00:00:00
openvas
openvas
23
Huawei EulerOS: Security Advisory for python-cryptography (EulerOS-SA-2023-2320)
2023-07-10 00:00:00
Fedora: Security Advisory for python-cryptography (FEDORA-2023-672f668f51)
2023-03-11 00:00:00
Fedora: Security Advisory for python-cryptography (FEDORA-2023-749dd47c79)
2023-03-12 00:00:00
veracode
veracode
Memory Corruption
2023-02-08 08:28:21
cbl_mariner
cbl_mariner
CVE-2023-23931 affecting package python-cryptography for versions less than 3.3.2-5
2024-03-19 17:21:46
CVE-2023-23931 affecting package python-cryptography 3.3.2-1
2023-03-02 04:18:32
CVE-2023-23931 affecting package python-cryptography for versions less than 3.3.2-4
2023-02-24 01:54:33
mageia
mageia
Updated python-cryptography packages fix security vulnerability
2023-02-27 23:27:16
freebsd
freebsd
py-cryptography -- allows programmers to misuse an API
2023-02-07 00:00:00
ibm
ibm
19
Security Bulletin: IBM Watson Discovery Cartridge for IBM Cloud Pak for Data affected by vulnerability in cryptography
2023-05-02 21:53:16
Security Bulletin: Vulnerability in cryptography affects IBM Cloud Pak for Data System 1.0(CPDS 1.0) [CVE-2023-23931]
2023-04-03 13:35:13
Security Bulletin: IBM Decision Optimization in IBM Cloud Pak for Data is vulnerable to a remote attacker to bypass security restrictions (CVE-2023-23931)
2023-06-29 13:22:34
github
github
Cipher.update_into can corrupt memory if passed an immutable python object as the outbuf
2023-02-07 20:54:10
alpinelinux
alpinelinux
CVE-2023-23931
2023-02-07 21:15:09
redhat
redhat
7
(RHSA-2023:7096) Moderate: python-cryptography security update
2023-11-14 08:45:19
(RHSA-2023:6615) Moderate: python-cryptography security update
2023-11-07 06:10:12
(RHSA-2023:4971) Moderate: Red Hat Ansible Automation Platform 2.4 Product Security and Bug Fix Update
2023-09-05 11:43:37
almalinux
almalinux
Moderate: python-cryptography security update
2023-11-14 00:00:00
Moderate: python-cryptography security update
2023-11-07 00:00:00
Moderate: python39:3.9 and python39-devel:3.9 security update
2024-05-22 00:00:00
oraclelinux
oraclelinux
python-cryptography security update
2023-11-17 00:00:00
python39:3.9 and python39-devel:3.9 security update
2024-05-24 00:00:00
redhatcve
redhatcve
CVE-2023-23931
2023-02-20 14:29:26
cve
cve
CVE-2023-23931
2023-02-07 21:15:09
ubuntucve
ubuntucve
CVE-2023-23931
2023-02-07 00:00:00
cvelist
cvelist
CVE-2023-23931 Cipher.update_into can corrupt memory in pyca cryptography
2023-02-07 20:54:03
nvd
nvd
CVE-2023-23931
2023-02-07 21:15:09
prion
prion
Design/Logic Flaw
2023-02-07 21:15:00
photon
photon
Moderate Photon OS Security Update - PHSA-2023-4.0-0405
2023-06-08 00:00:00
Critical Photon OS Security Update - PHSA-2023-3.0-0681
2023-11-04 00:00:00
Critical Photon OS Security Update - PHSA-2024-5.0-0187
2024-01-09 00:00:00
ubuntu
ubuntu
python-cryptography vulnerabilities
2023-12-06 00:00:00
cloudfoundry
cloudfoundry
USN-6539-1: python-cryptography vulnerabilities | Cloud Foundry
2024-04-04 00:00:00
redos
redos
ROS-20230620-06
2023-06-20 00:00:00
gentoo
gentoo
cryptography: Multiple Vulnerabilities
2024-07-01 00:00:00
rocky
rocky
python39:3.9 and python39-devel:3.9 security update
2024-06-14 13:59:30
hp
hp
HP ThinPro 8.1 SP 2 Security Updates
2024-04-12 00:00:00
HP ThinPro 8.0 SP 8 Security Updates
2024-03-01 00:00:00
ics
ics
Siemens SCALANCE XCM-/XRM-300
2024-02-15 12:00:00
oracle
oracle
4
Oracle Critical Patch Update Advisory - January 2024
2024-01-16 00:00:00
Oracle Critical Patch Update Advisory - October 2023
2023-10-17 00:00:00
Oracle Critical Patch Update Advisory - July 2023
2023-07-18 00:00:00
AI Score
6.5
Confidence
High
EPSS
0.001
Percentile
33.2%
JSON
Related for ELSA-2023-6615
debiancve
1
fedora
3
osv
10
debian
2
nessus
51
openvas
23
veracode
1
cbl_mariner
3
mageia
1
freebsd
1
ibm
19
github
1
alpinelinux
1
redhat
7
almalinux
3
oraclelinux
2
redhatcve
1
cve
1
ubuntucve
1
cvelist
1
nvd
1
prion
1
photon
3
ubuntu
1
cloudfoundry
1
redos
1
gentoo
1
rocky
1
hp
2
ics
1
oracle
4