VendorsM2Crypto Projectm2cryptoany version
Vulnerabilities

M2Crypto Project M2Crypto any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-50781
M2crypto: bleichenbacher timing attacks in the rsa decryption api - incomplete fix for cve-2020-25657
Published 2024-02-05 · Analyzed
7.5EPSS 0.011
CVE-2020-25657
A flaw was found in all released versions of m2crypto, where they are vulnerable to Bleichenbacher timing attacks in the RSA decryption API via the timed processing of valid PKCS#1 v1.5 Ciphertext. The highest threat from this vulnerability is to confidentiality.
Published 2021-01-12 · Modified
5.9EPSS 0.017