CVE-2026-81695
- EPSS 0.18%
- Veröffentlicht 27.08.2026 14:50:59
- Zuletzt bearbeitet 01.09.2026 20:20:58
openssl_encrypt versions before 1.4.9 fail to escape attacker-controlled key_id values printed to stderr during decrypt auto-detection. Attackers can craft encrypted files with malicious key_id containing escape sequences to repaint terminal output a...
CVE-2026-81694
- EPSS 0.18%
- Veröffentlicht 27.08.2026 14:50:58
- Zuletzt bearbeitet 03.09.2026 15:08:49
openssl-encrypt (pip package, versions <= 1.4.8) fails to sanitize filenames read from untrusted drive data (outside the AES-GCM authenticated manifest) before printing them in the verify-usb command's output. An attacker can plant filenames containi...
CVE-2026-81693
- EPSS 0.34%
- Veröffentlicht 27.08.2026 14:50:57
- Zuletzt bearbeitet 02.09.2026 13:09:58
openssl_encrypt before 1.4.9 fails to validate the total field from QR JSON payloads before materializing ranges. Attackers can supply crafted QR images with extremely large total values to trigger unbounded memory allocation and cause denial of serv...
CVE-2026-81692
- EPSS 0.34%
- Veröffentlicht 27.08.2026 14:50:56
- Zuletzt bearbeitet 23.09.2026 17:17:42
openssl_encrypt (pip: openssl-encrypt) versions 1.4.8 and earlier fail to validate the 36-bit STREAMINFO total_samples field of FLAC files before using it to size an allocation (np.random.randint(size=(total_samples, channels))). A ~50-byte crafted F...
CVE-2026-81691
- EPSS 0.2%
- Veröffentlicht 27.08.2026 14:50:56
- Zuletzt bearbeitet 02.09.2026 13:10:07
openssl_encrypt versions before 1.4.9 fail to validate server URLs in login and register_with_email functions, accepting unencrypted http:// URLs and unconfigured hosts. Attackers on the network path can intercept cleartext credentials including clie...
CVE-2026-81690
- EPSS 0.49%
- Veröffentlicht 27.08.2026 14:50:55
- Zuletzt bearbeitet 02.09.2026 13:10:16
openssl-encrypt (pip package) before 1.4.9 contains a symlink-following flaw in its verify-usb v2 added-file allowlist scan. The scan enumerated the drive with rglob(), which in CPython does not descend into symlinked directories and treats the symli...
CVE-2026-81689
- EPSS 0.2%
- Veröffentlicht 27.08.2026 14:50:54
- Zuletzt bearbeitet 03.09.2026 15:07:51
openssl_encrypt versions before 1.4.9 derive the remote-pepper wrap key using unsalted HKDF-SHA256 or bare SHA-256 of the password, allowing identical keys across all users and files. Attackers with access to wrapped pepper blobs can precompute a sin...
CVE-2026-81688
- EPSS 0.2%
- Veröffentlicht 27.08.2026 14:50:53
- Zuletzt bearbeitet 02.09.2026 13:11:25
openssl_encrypt versions before 1.4.9 store an unkeyed SHA-256 hash of the plaintext in the cleartext file header metadata. Attackers can read this hash without the password to confirm guessed plaintexts offline or fingerprint identical plaintexts ac...
CVE-2026-81687
- EPSS 0.21%
- Veröffentlicht 27.08.2026 14:50:51
- Zuletzt bearbeitet 23.09.2026 17:17:42
openssl_encrypt versions before 1.4.9 fail to enforce a time ceiling on key derivation function iteration counts specified in file metadata. Attackers can craft files with extremely high KDF iteration counts to consume CPU resources for unbounded per...
CVE-2026-81686
- EPSS 0.11%
- Veröffentlicht 27.08.2026 14:50:51
- Zuletzt bearbeitet 02.09.2026 13:11:58
openssl_encrypt 1.4.x before 1.4.9 contains an optional D-Bus crypto service whose org.freedesktop.DBus.Properties.Set method performs neither a polkit authorization check nor value validation. Any local user on the system bus can call Set without au...