VYPR

rpm package

suse/python-cryptography&distro=SUSE Linux Enterprise Module for Public Cloud 15 SP4

pkg:rpm/suse/python-cryptography&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4

Vulnerabilities (2)

  • CVE-2025-3416LowApr 8, 2025
    affected < 41.0.3-150400.16.22.1fixed 41.0.3-150400.16.22.1

    A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.

  • CVE-2023-30608Apr 18, 2023
    affected < 41.0.3-150400.16.19.1fixed 41.0.3-150400.16.19.1

    sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of