pyOpenSSL@22.1.0 vulnerabilities
Python wrapper module around the OpenSSL library
-
latest version
24.2.1
-
latest non vulnerable version
-
first published
17 years ago
-
latest version published
4 months ago
-
licenses detected
- [0.12,)
Direct Vulnerabilities
Known vulnerabilities in the pyOpenSSL package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Uncontrolled Resource Consumption ('Resource Exhaustion') due to the session cache entering an incorrect state and failing to flush properly as it fills, leading to uncontrolled memory consumption. This condition is triggered under certain server configurations when processing TLSv1.3 sessions. Specifically, this occurs if the non-default Note: This issue is only exploitable if the server supports TLSv1.3 and is configured with the How to fix Uncontrolled Resource Consumption ('Resource Exhaustion')? There is no fixed version for |
[22.0.0,)
|
Affected versions of this package are vulnerable to Resource Exhaustion via the How to fix Resource Exhaustion? There is no fixed version for |
[22.0.0,)
|
Affected versions of this package are vulnerable to Use of a Broken or Risky Cryptographic Algorithm due to an issue in the Note: This is only exploitable if the attacker has the ability to affect the algorithm's usage and the application relies on non-volatile XMM registers. How to fix Use of a Broken or Risky Cryptographic Algorithm? There is no fixed version for |
[22.0.0,)
|