UbuntuUpdates.org

Package "python-pycryptodome-doc"

Name: python-pycryptodome-doc

Description:

cryptographic Python library (documentation)

Latest version: 3.11.0+dfsg1-3ubuntu0.1
Release: jammy (22.04)
Level: updates
Repository: main
Head package: pycryptodome
Homepage: https://www.pycryptodome.org

Links


Download "python-pycryptodome-doc"


Other versions of "python-pycryptodome-doc" in Jammy

Repository Area Version
base main 3.11.0+dfsg1-3build1
security main 3.11.0+dfsg1-3ubuntu0.1

Changelog

Version: 3.11.0+dfsg1-3ubuntu0.1 2024-01-23 18:06:49 UTC

  pycryptodome (3.11.0+dfsg1-3ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: side-channel leakage for OAEP decryption
    - debian/patches/CVE-2023-52323-1.patch: fix side-channel leakage in
      RSA decryption.
    - debian/patches/CVE-2023-52323-2.patch: avoid changing signature of
      RSA._decrypt() method if possible.
    - debian/patches/CVE-2023-52323-3.patch: use constant-time (faster)
      padding decoding also for OAEP.
    - CVE-2023-52323

 -- Marc Deslauriers <email address hidden> Fri, 12 Jan 2024 13:06:01 -0500

CVE-2023-52323 PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger attack.



About   -   Send Feedback to @ubuntu_updates