CVE-2023-50782

A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:redhat:ansible_automation_platform:2.0:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:redhat:update_infrastructure:4:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:cryptography.io:cryptography:*:*:*:*:*:python:*:*

Configuration 5 (hide)

OR cpe:2.3:a:couchbase:couchbase_server:7.6.0:*:*:*:*:*:*:*
cpe:2.3:a:couchbase:couchbase_server:7.6.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-02-05 21:15

Updated : 2024-11-21 08:37


NVD link : CVE-2023-50782

Mitre link : CVE-2023-50782

CVE.ORG link : CVE-2023-50782


JSON object : View

Products Affected

redhat

  • ansible_automation_platform
  • update_infrastructure
  • enterprise_linux

cryptography.io

  • cryptography

couchbase

  • couchbase_server
CWE
CWE-208

Observable Timing Discrepancy

CWE-203

Observable Discrepancy