← Back

Pycryptodome

pycryptodome

Vendor: Pycryptodome • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Pycryptodome
2Pycryptodome
Pycryptodomex
Jun 17, 2026
Jan 5, 2024
N/A· v4
5.9 MEDIUM· v3
N/A· v2
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger attack.
1Pycryptodome
1Pycryptodome
Nov 21, 2024
Aug 20, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, leading to the mishandling of messages shorter than 16 bytes.