Lucene search

K
redhatcveRedhat.comRH:CVE-2020-13757
HistoryJun 18, 2020 - 1:25 p.m.

CVE-2020-13757

2020-06-1813:25:19
redhat.com
access.redhat.com
8

0.002 Low

EPSS

Percentile

64.8%

A flaw was found in the python-rsa package, where it does not explicitly check the ciphertext length against the key size and ignores the leading 0 bytes during the decryption of the ciphertext. This flaw allows an attacker to perform a ciphertext attack, leading to a denial of service. The highest threat from this vulnerability is to confidentiality.