Junglewise Threat Intelligence

CVE-2015-7764: PYSEC-2017-50 - Lemur 0.1.4 does not use sufficient entropy in its IV when encrypting AES in CBC mode.

CVE-2015-7764 · Severity: low · CVSS 3.1 · Published 2017-08-09

Technologies: lemur (PyPI). Vendors: PyPI.

Executive brief

Lemur 0.1.4 does not use sufficient entropy in its IV when encrypting AES in CBC mode.

Affected products

  • PyPI lemur

Related threats