A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.
2024-02-05T21:15:11.183
2024-11-21T08:37:18.337
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | redhat | ansible_automation_platform | 2.0 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | Yes |
Operating System | redhat | enterprise_linux | 9.0 | Yes |
Application | redhat | update_infrastructure | 4 | Yes |
Application | cryptography.io | cryptography | < 42.0.0 | Yes |
Application | couchbase | couchbase_server | 7.6.0 | Yes |
Application | couchbase | couchbase_server | 7.6.1 | Yes |