cryptography has a buffer overflow if non-contiguous buffers were passed to APIs
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 45.0.0 to before 46.0.7, if a non-contiguous buffer was passed to APIs which accepted Python buffers (e.g. Hash.update()), this could lead to buffer overflows. This vulnerability is fixed in 46.0.7.
References
Affected products
- ==>= 45.0.0, < 46.0.7
Matching in nixpkgs
pkgs.python312Packages.cryptography
Package which provides cryptographic recipes and primitives
pkgs.python313Packages.cryptography
Package which provides cryptographic recipes and primitives
pkgs.python314Packages.cryptography
Package which provides cryptographic recipes and primitives
pkgs.python312Packages.django-cryptography
Set of primitives for performing cryptography in Django
pkgs.python313Packages.django-cryptography
Set of primitives for performing cryptography in Django
pkgs.python312Packages.mypy-boto3-payment-cryptography
Type annotations for boto3 payment-cryptography
-
nixos-25.11 boto3-payment-cryptography-1.41.0
- nixos-25.11-small boto3-payment-cryptography-1.41.0
- nixpkgs-25.11-darwin boto3-payment-cryptography-1.41.0
pkgs.python313Packages.mypy-boto3-payment-cryptography
Type annotations for boto3 payment-cryptography
-
nixos-unstable boto3-payment-cryptography-1.42.83
- nixpkgs-unstable boto3-payment-cryptography-1.42.83
- nixos-unstable-small boto3-payment-cryptography-1.42.83
-
nixos-25.11 boto3-payment-cryptography-1.41.0
- nixos-25.11-small boto3-payment-cryptography-1.41.0
- nixpkgs-25.11-darwin boto3-payment-cryptography-1.41.0
pkgs.python314Packages.mypy-boto3-payment-cryptography
Type annotations for boto3 payment-cryptography
-
nixos-unstable boto3-payment-cryptography-1.42.83
- nixpkgs-unstable boto3-payment-cryptography-1.42.83
- nixos-unstable-small boto3-payment-cryptography-1.42.83
pkgs.python312Packages.mypy-boto3-payment-cryptography-data
Type annotations for boto3 payment-cryptography-data
-
nixos-25.11 boto3-payment-cryptography-data-1.41.0
- nixos-25.11-small boto3-payment-cryptography-data-1.41.0
- nixpkgs-25.11-darwin boto3-payment-cryptography-data-1.41.0
pkgs.python313Packages.mypy-boto3-payment-cryptography-data
Type annotations for boto3 payment-cryptography-data
-
nixos-unstable boto3-payment-cryptography-data-1.42.12
- nixpkgs-unstable boto3-payment-cryptography-data-1.42.12
- nixos-unstable-small boto3-payment-cryptography-data-1.42.12
-
nixos-25.11 boto3-payment-cryptography-data-1.41.0
- nixos-25.11-small boto3-payment-cryptography-data-1.41.0
- nixpkgs-25.11-darwin boto3-payment-cryptography-data-1.41.0
pkgs.python314Packages.mypy-boto3-payment-cryptography-data
Type annotations for boto3 payment-cryptography-data
-
nixos-unstable boto3-payment-cryptography-data-1.42.12
- nixpkgs-unstable boto3-payment-cryptography-data-1.42.12
- nixos-unstable-small boto3-payment-cryptography-data-1.42.12
pkgs.python312Packages.types-aiobotocore-payment-cryptography
Type annotations for aiobotocore payment-cryptography
pkgs.python313Packages.types-aiobotocore-payment-cryptography
Type annotations for aiobotocore payment-cryptography
pkgs.python312Packages.types-aiobotocore-payment-cryptography-data
Type annotations for aiobotocore payment-cryptography-data
Package maintainers
-
@SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com>
-
@centromere Alex Wied <nix@centromere.net>
-
@fabaff Fabian Affolter <mail@fabian-affolter.ch>
-
@mbalatsko Maksym Balatsko <mbalatsko@gmail.com>
-
@mdaniels5757 Michael Daniels <nix@mdaniels.me>