PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers to conduct brute force attacks to obtain the private key.
{ "github_reviewed_at": "2024-04-30T14:35:18Z", "severity": "MODERATE", "nvd_published_at": "2012-06-17T03:41:00Z", "github_reviewed": true, "cwe_ids": [] }