High severity7.5NVD Advisory· Published May 13, 2016· Updated Jun 17, 2026
CVE-2015-7827
CVE-2015-7827
Description
Botan before 1.10.13 and 1.11.x before 1.11.22 make it easier for remote attackers to conduct million-message attacks by measuring time differences, related to decoding of PKCS#1 padding.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
30cpe:2.3:a:botan_project:botan:*:*:*:*:*:*:*:*+ 23 more
- cpe:2.3:a:botan_project:botan:*:*:*:*:*:*:*:*range: <=1.10.13
- cpe:2.3:a:botan_project:botan:1.11.0:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.1:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.10:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.11:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.12:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.13:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.14:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.15:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.16:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.17:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.18:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.19:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.2:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.20:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.21:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.3:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.4:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.5:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.6:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.7:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.8:*:*:*:*:*:*:*
- cpe:2.3:a:botan_project:botan:1.11.9:*:*:*:*:*:*:*
- (no CPE)range: <1.10.13, >=1.11.0 <1.11.22
- cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*
- osv-coords4 versionspkg:rpm/opensuse/Botan&distro=openSUSE%20Tumbleweedpkg:rpm/suse/Botan&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4pkg:rpm/suse/Botan&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP1pkg:rpm/suse/Botan&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2
< 1.10.13-1.1+ 3 more
- (no CPE)range: < 1.10.13-1.1
- (no CPE)range: < 1.6.5-4.1
- (no CPE)range: < 1.10.9-3.1
- (no CPE)range: < 1.10.9-3.1
Patches
Vulnerability mechanics
References
4- botan.randombit.net/security.htmlnvdVendor Advisory
- marc.infonvdVendor Advisory
- lists.fedoraproject.org/pipermail/package-announce/2016-May/183669.htmlnvd
- www.debian.org/security/2016/dsa-3565nvd
News mentions
0No linked articles in our index yet.