Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25547
HistoryJun 02, 2020 - 1:46 a.m.

Information Disclosure

2020-06-0201:46:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.002 Low

EPSS

Percentile

64.8%

rsa is vulnerable to information disclosure. The vulnerability exists as rsa ignores prepended \0 bytes during the decryption of a ciphertext in PKCS1_v1_5, where it is supposed to have failed, allowing the interference that this library is used for cryptography.