pkg:Debian/python-cryptography
14 total CVEsCRITICAL2HIGH4MEDIUM8
✅ Check your installed version
All known vulnerabilities
- CRITICAL9.8CVE-2026-39892Cryptography vulnerable to buffer overflow if non-contiguous buffers were passed to APIsfrom 0, < 46.0.7-1
- CRITICAL9.1CVE-2020-36242PyCA Cryptography symmetrically encrypting large values can lead to integer overflowfrom 0, < 3.3.2-1
- HIGH7.5CVE-2024-26130cryptography NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash overridefrom 0, < 38.0.4-3+deb12u1
- from 0
- from 0, < 1.5.3-1
- from 0, < 2.3-1
- MEDIUM6.5CVE-2026-26007cryptography Vulnerable to a Subgroup Attack Due to Missing Subgroup Validation for SECT Curvesfrom 0
- MEDIUM6.5CVE-2023-23931Cipher.update_into can corrupt memory if passed an immutable python object as the outbuffrom 0, < 2.6.1-3+deb10u4
- MEDIUM6.5CVE-2023-23931Cipher.update_into can corrupt memory if passed an immutable python object as the outbuffrom 0, < 3.3.2-1+deb11u1
- MEDIUM6.5CVE-2023-23931Cipher.update_into can corrupt memory if passed an immutable python object as the outbuffrom 0, < 3.3.2-1+deb11u1
- MEDIUM6.5CVE-2023-23931Cipher.update_into can corrupt memory if passed an immutable python object as the outbuffrom 0, < 2.6.1-3+deb10u3
- from 0, < 3.3.2-1+deb11u1
- from 0, < 3.2.1-1
- from 0