python-cryptography: denial of service
| Package(s): | python-cryptography | CVE #(s): | |||||||||||||
| Created: | November 13, 2015 | Updated: | November 30, 2015 | ||||||||||||
| Description: | From the Red Hat bug report: The OpenSSL backend prior to 1.0.2 made extensive use of assertions to check response codes where our tests could not trigger a failure. However, when Python is run with -O these asserts are optimized away. If a user ran Python with this flag and got an invalid response code this could result in undefined behavior or worse. | ||||||||||||||
| Alerts: |
| ||||||||||||||
