PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers to conduct brute force attacks to obtain the private key.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2012-06-17 03:41
Updated : 2025-04-11 00:51
NVD link : CVE-2012-2417
Mitre link : CVE-2012-2417
CVE.ORG link : CVE-2012-2417
JSON object : View
Products Affected
dlitz
- pycrypto
CWE
CWE-310
Cryptographic Issues