CVE-2023-38325
The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options.
The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options.
HIGH · CVSS 7.5
EPSS 0.01168
Act now
- Public exploit or PoC is available
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0