VYPR

apk package

wolfi/mitmproxy

pkg:apk/wolfi/mitmproxy

Vulnerabilities (24)

  • CVE-2024-0727MedJan 26, 2024
    affected < 12.2.1-r0fixed 12.2.1-r0

    Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack Impact summary: Applications loading files in the PKCS12 format from untrusted sources might terminate abruptly. A file in PKCS12 format can c

  • CVE-2023-49083MedNov 29, 2023
    affected < 12.2.1-r0fixed 12.2.1-r0

    cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious

  • CVE-2023-0286HigFeb 8, 2023
    affected < 12.2.1-r0fixed 12.2.1-r0

    There is a type confusion vulnerability relating to X.400 address processing inside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but the public structure definition for GENERAL_NAME incorrectly specified the type of the x400Address field as ASN1_TYPE. This

  • CVE-2023-23931MedFeb 7, 2023
    affected < 12.2.1-r0fixed 12.2.1-r0

    cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In affected versions `Cipher.update_into` would accept Python objects which implement the buffer protocol, but provide only immutable buffers. This would allow immutable object

Page 2 of 2