Release date:
Updated on:
Affected Systems:
Python python 2.5.x
Unaffected system:
Python/python 2.6
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53687
Cve id: CVE-2012-2417
PyCrypto is an encryption toolkit written in Python.
An error occurred when using the ElGamal solution to generate a key in versions earlier than PyCrypto 2.5, which can reduce the key space and generate a private key to obtain sensitive information.
<* Source: Dwayne C. Litzenberger (dlitz@dlitz.net)
Link: http://secunia.com/advisories/49263/
Https://bugs.launchpad.net/pycrypto/+bug/985164
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Python
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Www.python.org