Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Python-RSA before 4.1 ignores leading '\0' bytes during decryption of ciphertext. This could conceivably have a security-relevant impact, e.g., by helping an attacker to infer that an application uses Python-RSA, or if the length of accepted ciphertext affects application behavior (such as by causing excessive memory allocation).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Python-RSA 加密问题漏洞
Vulnerability Description
Python-RSA是荷兰SYBREN A.STÜVEL软件开发者的一款支持加密和解密、签名、验证签名以及密钥生成的Python库。 Python-RSA 4.1之前版本中存在加密问题漏洞。攻击者可利用该漏洞推断应用程序是否使用Python-RSA,所接受的密文的长度是否影响应用程序运行或造成其他危害。
CVSS Information
N/A
Vulnerability Type
N/A