phpseclib before 2.0.31 and 3.x before 3.0.7 mishandles RSA PKCS#1 v1.5 signature verification.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3197-1 | phpseclib security update |
Debian DLA |
DLA-3198-1 | php-phpseclib security update |
EUVD |
EUVD-2021-0879 | phpseclib before 2.0.31 and 3.x before 3.0.7 mishandles RSA PKCS#1 v1.5 signature verification. |
Github GHSA |
GHSA-vf4w-fg7r-5v94 | Improper Certificate Validation in phpseclib |
Ubuntu USN |
USN-7404-1 | phpseclib vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T22:24:59.565Z
Reserved: 2021-04-05T00:00:00
Link: CVE-2021-30130
No data.
Status : Modified
Published: 2021-04-06T15:15:13.497
Modified: 2024-11-21T06:03:22.027
Link: CVE-2021-30130
No data.
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Github GHSA
Ubuntu USN